What are three benefits of deploying a GET VPN? (Choose three.)
What are three benefits of deploying a GET VPN? (Choose three.)A . It provides highly scalable point-to-point topologies.B . It allows replication of packets after encryption.C . It is suited for enterprises running over a DMVPN network.D . It preserves original source and destination IP address information.E . It simplifies...
Which command configures IKEv2 symmetric identity authentication?
Which command configures IKEv2 symmetric identity authentication?A . match identity remote address 0.0.0.0B . authentication local pre-shareC . authentication pre-shareD . authentication remote rsa-sigView AnswerAnswer: D
Which two parameters are configured within an IKEv2 proposal on an IOS router? (Choose two.)
Which two parameters are configured within an IKEv2 proposal on an IOS router? (Choose two.)A . authenticationB . encryptionC . integrityD . lifetimeView AnswerAnswer: B, C
Which statement is true when implementing a router with a dynamic public IP address in a crypto map based site-to-site VPN?
Which statement is true when implementing a router with a dynamic public IP address in a crypto map based site-to-site VPN?A . The router must be configured with a dynamic crypto map.B . Certificates are always used for phase 1 authentication.C . The tunnel establishment will fail if the router...
What are the three primary components of a GET VPN network? (Choose three.)
What are the three primary components of a GET VPN network? (Choose three.)A . Group Domain of Interpretation protocolB . Simple Network Management ProtocolC . server load balancerD . accounting serverE . group memberF . key serverView AnswerAnswer: A, E, F
Which two troubleshooting steps should be taken when Cisco AnyConnect cannot establish an IKEv2 connection, while SSL works fine? (Choose two.)
Which two troubleshooting steps should be taken when Cisco AnyConnect cannot establish an IKEv2 connection, while SSL works fine? (Choose two.)A . Verify that the primary protocol on the client machine is set to IPsec.B . Verify that AnyConnect is enabled on the correct interface.C . Verify that the IKEv2...
Which Cisco adaptive security appliance command can be used to view the count of all active VPN sessions?
Which Cisco adaptive security appliance command can be used to view the count of all active VPN sessions?A . show vpn-sessiondb summaryB . show crypto ikev1 saC . show vpn-sessiondb ratio encryptionD . show iskamp sa detailE . show crypto protocol statistics allView AnswerAnswer: A
Which two troubleshooting steps should be taken when Cisco AnyConnect cannot establish an IKEv2 connection, while SSL works fine? (Choose two.)
Which two troubleshooting steps should be taken when Cisco AnyConnect cannot establish an IKEv2 connection, while SSL works fine? (Choose two.)A . Verify that the primary protocol on the client machine is set to IPsec.B . Verify that AnyConnect is enabled on the correct interface.C . Verify that the IKEv2...
What is the most possible cause of this problem?
The Cisco AnyConnect client fails to connect via IKEv2 but works with SSL. The following error message is displayed: "Login Denied, unauthorized connection mechanism, contact your administrator" What is the most possible cause of this problem?A . DAP is terminating the connection because IKEv2 is the protocol that is being...
The network administrator is adding a new spoke, but the tunnel is not passing traffic. What could cause this issue?
Refer to the exhibit. The network administrator is adding a new spoke, but the tunnel is not passing traffic. What could cause this issue?A . DMVPN is a point-to-point tunnel, so there can be only one spoke.B . There is no EIGRP configuration, and therefore the second tunnel is not...