Which statement about application inspection of SAF network services on an adaptive security appliance is true?
Correct Answer: D
Explanation/Reference:
Explanation:
The Adaptive Security Appliances do not have application inspection for the SAF network service. When Unified CM uses a SAF-enabled H.323 trunk to place a call, the ASA cannot inspect the SAF packet to learn the ephemeral port number used in the H.225 signaling. Therefore, in scenarios where call traffic from SAF-enabled H.323 trunks traverses the ASAs, ACLs must be configured on the ASAs to allow this signaling traffic. The ACL configuration must account for all the ports used by the H.225 and H.245 signaling.
References: Cisco Collaboration 9.x Solution Reference Network Designs (SRND) page 4-34