Which IKEv2 feature minimizes the configuration of a FlexVPN on Cisco IOS devices?

Which IKEv2 feature minimizes the configuration of a FlexVPN on Cisco IOS devices?A . IKEv2 Suite-BB . IKEv2 proposalsC . IKEv2 profilesD . IKEv2 Smart DefaultsView AnswerAnswer: D

February 25, 2019 No Comments READ MORE +

A company has decided to migrate an existing IKEv1 VPN tunnel to IKEv2. Which two are valid configuration constructs on a Cisco IOS router? (Choose two.)

A company has decided to migrate an existing IKEv1 VPN tunnel to IKEv2. Which two are valid configuration constructs on a Cisco IOS router? (Choose two.)A . crypto ikev2 keyring keyring-name peer peer1 address 209.165.201.1 255.255.255.255 pre-shared-key local key1 pre-shared-key remote key2B . crypto ikev2 transform-set transform-set-name esp-3des esp-md5-hmac esp-aes...

February 23, 2019 No Comments READ MORE +

A Cisco IOS SSL VPN gateway is configured to operate in clientless mode so that users can access file shares on a Microsoft Windows 2003 server. Which protocol is used between the Cisco IOS router and the Windows server?

A Cisco IOS SSL VPN gateway is configured to operate in clientless mode so that users can access file shares on a Microsoft Windows 2003 server. Which protocol is used between the Cisco IOS router and the Windows server?A . HTTPSB . NetBIOSC . CIFSD . HTTPView AnswerAnswer: C

February 20, 2019 No Comments READ MORE +

Based on the provided ASDM configuration for the remote ASA, which one of the following is correct?

Based on the provided ASDM configuration for the remote ASA, which one of the following is correct?A . An access-list must be configured on the outside interface to permit inbound VPN trafficB . A route to 192.168.22.0/24 will not be automatically installed in the routing tableC . The ASA will...

February 18, 2019 No Comments READ MORE +

What are two forms of SSL VPN? (Choose two.)

What are two forms of SSL VPN? (Choose two.)A . port forwardingB . Full Tunnel ModeC . Cisco IOS WebVPND . Cisco AnyConnectView AnswerAnswer: CD

February 17, 2019 No Comments READ MORE +

After the configuration is performed, which combination of devices can connect?

Refer to the exhibit. After the configuration is performed, which combination of devices can connect?A . a device with an identity type of IPv4 address of 209.165.200.225 or 209.165.202.155 or a certificate with subject name of "cisco.com"B . a device with an identity type of IPv4 address of both 209.165.200.225...

February 14, 2019 No Comments READ MORE +

You are troubleshooting a site-to-site VPN issue where the tunnel is not establishing. After issuing the debug crypto ipsec command on the headend router, you see the following output. What does this output suggest?

You are troubleshooting a site-to-site VPN issue where the tunnel is not establishing. After issuing the debug crypto ipsec command on the headend router, you see the following output. What does this output suggest? 1d00h: IPSec (validate_proposal): transform proposal (port 3, trans 2, hmac_alg 2) not supported 1d00h: ISAKMP (0:2)...

February 14, 2019 No Comments READ MORE +

You are troubleshooting a site-to-site VPN issue where the tunnel is not establishing. After issuing the debug crypto isakmp command on the headend router, you see the following output. What does this output suggest?

You are troubleshooting a site-to-site VPN issue where the tunnel is not establishing. After issuing the debug crypto isakmp command on the headend router, you see the following output. What does this output suggest? 1d00h: ISAKMP (0:1): atts are not acceptable. Next payload is 0 1d00h: ISAKMP (0:1); no offers...

February 13, 2019 No Comments READ MORE +

When Cisco ASA applies VPN permissions, what is the first set of attributes that it applies?

When Cisco ASA applies VPN permissions, what is the first set of attributes that it applies?A . dynamic access policy attributesB . group policy attributesC . connection profile attributesD . user attributesView AnswerAnswer: A

February 11, 2019 No Comments READ MORE +

Which three plugins are available for clientless SSL VPN? (Choose three.)

Which three plugins are available for clientless SSL VPN? (Choose three.)A . CIFSB . RDP2C . SSHD . VNCE . SQLNETF . ICMPView AnswerAnswer: B, C, D

February 8, 2019 No Comments READ MORE +