Which two types of web resources or protocols are enabled by default on the Cisco ASA Clientless SSL VPN portal? (Choose two.)
Which two types of web resources or protocols are enabled by default on the Cisco ASA Clientless SSL VPN portal? (Choose two.)A . HTTPB . ICA (Citrix)C . VNCD . RDPE . CIFSView AnswerAnswer: DE Explanation: Reference: https://www.cisco.com/c/en/us/td/docs/security/asa/asa94/config-guides/cli/vpn/asa-94-vpnĀconfig/webvpn-configure-gateway.html
Which two tunnel types produce the show crypto ipsec sa output seen in the exhibit?
Refer to the exhibit. Which two tunnel types produce the show crypto ipsec sa output seen in the exhibit? (Choose two.)A . crypto mapB . DMVPNC . GRED . FlexVPNE . VTIView AnswerAnswer: BE
Which spoke configuration mitigates tunnel drops?
Refer to the exhibit. The DMVPN tunnel is dropping randomly and no tunnel protection is configured. Which spoke configuration mitigates tunnel drops? A) B) C) D) A . Option AB . Option BC . Option CD . Option DView AnswerAnswer: D
Based on the syslog message, which action brings up the VPN tunnel?
Refer to the exhibit. A customer cannot establish an IKEv2 site-to-site VPN tunnel between two Cisco ASA devices. Based on the syslog message, which action brings up the VPN tunnel? A. Reduce the maximum SA limit on the local Cisco ASA. B. Increase the maximum in-negotiation SA limit on the...
Which method dynamically installs the network routes for remote tunnel endpoints?
Which method dynamically installs the network routes for remote tunnel endpoints?A . policy-based routingB . CEFC . reverse route injectionD . route filteringView AnswerAnswer: C Explanation: Reference: https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_vpnav/configuration/12-4t/secĀvpn-availability-12-4t-book/sec-rev-rte-inject.html
Which value must be configured in the User Group field when the Cisco AnyConnect Profile is created to connect to an ASA headend with IPsec as the primary protocol?
Refer to the exhibit. Which value must be configured in the User Group field when the Cisco AnyConnect Profile is created to connect to an ASA headend with IPsec as the primary protocol?A . address-poolB . group-aliasC . group-policyD . tunnel-groupView AnswerAnswer: D Explanation: Reference: https://www.cisco.com/c/en/us/td/docs/security/vpn_client/anyconnect/anyconnect41/administration/guide/b_AnyConnect_Administrator_Guide_4-1/configure-vpn.html
What is configured as a result of this command set?
Refer to the exhibit. What is configured as a result of this command set?A . FlexVPN client profile for IPv6B . FlexVPN server to authorize groups by using an IPv6 external AAAC . FlexVPN server for an IPv6 dVTI sessionD . FlexVPN server to authenticate IPv6 peers by using EAPView...
Which tool should you use?
A company manages a chain of retail stores. The company stores a list of retail store names and numbers in one Power BI table. The company stores sales transaction data including a transaction ID in another table. The transaction ID includes the store number. You need to show the store...
Which two parameters help to map a VPN session to a tunnel group without using the tunnel-group list? (Choose two.)
Which two parameters help to map a VPN session to a tunnel group without using the tunnel-group list? (Choose two.)A . group-aliasB . certificate mapC . optimal gateway selectionD . group-urlE . AnyConnect client versionView AnswerAnswer: BD
Which IKEv2 packet will contain details of the exchange?
A second set of traffic selectors is negotiated between two peers using IKEv2. Which IKEv2 packet will contain details of the exchange?A . IKEv2 IKE_SA_INITB . IKEv2 INFORMATIONALC . IKEv2 CREATE_CHILD_SAD . IKEv2 IKE_AUTHView AnswerAnswer: B