Which situation prevents the user from connecting?

Refer to the exhibit. You have a Clientless SSL VPN service on a Cisco ASA. Which situation prevents the user from connecting? A. The user has a non-Cisco VPN client B. The user’s browser is incompatible C. The user is behind a web proxy D. The Clientless SSL VPN protocol...

November 22, 2019 No Comments READ MORE +

Which action do you take to allow EIGRP to advertise all routes between the hub and all the spokes?

You must implement DMVPN Phase 3 by using EIGRP as the dynamic routing protocol for the tunnel overlay. Which action do you take to allow EIGRP to advertise all routes between the hub and all the spokes?A . Summarize routes from the hub to the spokes.B . Disable split-horizon for...

November 21, 2019 No Comments READ MORE +

What option can be configured to allow this?

An engineer wants to ensure that Diffie-Helman keys are re-generated upon a pahse-2 rekey. What option can be configured to allow this?A . Aggressive modeB . Dead-peer detectionC . Main modeD . Perfect-forward secrecyView AnswerAnswer: D

November 21, 2019 No Comments READ MORE +

Drag and drop the descriptions from the left onto the correct IPsec tunnel types on the right

DRAG DROP Drag and drop the descriptions from the left onto the correct IPsec tunnel types on the right. View AnswerAnswer:

November 21, 2019 No Comments READ MORE +

When you confrere an access list on the external interface of a FlexVPN hub. which step is optional?

When you confrere an access list on the external interface of a FlexVPN hub. which step is optional?A . allowing IP protocol 50B . allowing ICMP protocolC . allowing UDP port 500D . allowing UDP port 4500View AnswerAnswer: B

November 21, 2019 No Comments READ MORE +

Which result of running the command is true?

Refer to the exhibit. Which result of running the command is true?A . authenticates the IKEv2 peers in the 172.16.0.0/16 range by using the cisco123 keyB . secures all the certificates in the IKE exchange by using the cisco123 keyC . authenticates the IKEv1 peers in the 172.16.0.0/16 range by...

November 21, 2019 No Comments READ MORE +

When a Cisco ASA is configured for Active/Standby failover, what is replicated between the devices?

When a Cisco ASA is configured for Active/Standby failover, what is replicated between the devices?A . HostScan imagesB . Cisco AnyConnect profilesC . VPN sessionsD . Cisco AnyConnect imagesView AnswerAnswer: C

November 21, 2019 No Comments READ MORE +

Which statement about this output is true?

Refer to the exhibit: Which statement about this output is true?A . Identity between endpoints is verified using a certificate authorityB . The tunnel is not functional because NAT-T is not configured.C . This router has sent the first packet to establish the Flex VPN tunnelD . The remote device...

November 20, 2019 No Comments READ MORE +

Which two configurations do you implement in Cisco AnyConnect?

Your company network security policy requires that all network traffic be tunneled to the corporate office. End users must be able to access local LAN resources when they connect to the corporate network. Which two configurations do you implement in Cisco AnyConnect? (Choose two.)A . split-exclude tunnelingB . local LAN...

November 20, 2019 No Comments READ MORE +

Which VPN technology allows a shared IPsec SA to be used?

An engineer must set up a site-to-site VPN implementation with an any-to-any topology that provides secures routing across the router backbone. Which VPN technology allows a shared IPsec SA to be used?A . FilexVPNB . IPsec VPNC . GET VPND . DMVPNView AnswerAnswer: C

November 20, 2019 No Comments READ MORE +