Which VPN technology is allowed for users connecting to the Employee tunnel group?
Refer to the exhibit. Which VPN technology is allowed for users connecting to the Employee tunnel group?A . SSL AnyConnectB . IKEv2 AnyConnectC . crypto mapD . clientlessView AnswerAnswer: D Explanation: When you configure other group policies, any attribute that you do not explicitly specify takes its value from the...
On a FlexVPN hub-and-spoke topology where spoke-to-spoke tunnels are not allowed, which command is needed for the hub to be able to terminate FlexVPN tunnels?
On a FlexVPN hub-and-spoke topology where spoke-to-spoke tunnels are not allowed, which command is needed for the hub to be able to terminate FlexVPN tunnels?A . interface virtual-accessB . ip nhrp redirectC . interface tunnelD . interface virtual-templateView AnswerAnswer: D Explanation: On a FlexVPN hub-and-spoke topology where spoke-to-spoke tunnels are...
Why does this failure occur?
An engineer is troubleshooting a new DMVPN setup on a Cisco IOS router. After the show crypto isakmp sa command is issued, a response is returned of "MM_NO_STATE." Why does this failure occur?A . The ISAKMP policy priority values are invalid.B . ESP traffic is being dropped.C . The Phase...
Which feature allows the ASA to handle nonstandard applications and web resources so that they display correctly over a clientless SSL VPN connection?
Which feature allows the ASA to handle nonstandard applications and web resources so that they display correctly over a clientless SSL VPN connection?A . single sign-onB . Smart TunnelC . WebType ACLD . plug-insView AnswerAnswer: D Explanation: Plug-ins are extensions to the Clientless SSL VPN feature that enable the ASA...
Which VPN does VPN load balancing on the ASA support?
Which VPN does VPN load balancing on the ASA support?A . VTIB . IPsec site-to-site tunnelsC . L2TP over IPsecD . Cisco AnyConnectView AnswerAnswer: D
What might be the problem?
Cisco AnyConnect Secure Mobility Client has been configured to use IKEv2 for one group of users and SSL for another group. When the administrator configures a new AnyConnect release on the Cisco ASA, the IKEv2 users cannot download it automatically when they connect. What might be the problem?A . The...
What is configured as a result of this command set?
Refer to the exhibit. What is configured as a result of this command set?A . FlexVPN client profile for IPv6B . FlexVPN server to authorize groups by using an IPv6 external AAAC . FlexVPN server for an IPv6 dVTI sessionD . FlexVPN server to authenticate IPv6 peers by using EAPView...
Which two remote access VPN solutions support SSL? (Choose two.)
Which two remote access VPN solutions support SSL? (Choose two.)A . FlexVPNB . clientlessC . EZVPND . L2TPE . Cisco AnyConnectView AnswerAnswer: BE
Which IKE identity does an IOS/IOS-XE headend expect to receive if an IPsec Cisco AnyConnect client uses default settings?
Which IKE identity does an IOS/IOS-XE headend expect to receive if an IPsec Cisco AnyConnect client uses default settings?A . *$SecureMobilityClient$*B . *$AnyConnectClient$*C . *$RemoteAccessVpnClient$*D . *$DfltlkeldentityS*View AnswerAnswer: B Explanation: Reference: https://www.cisco.com/c/en/us/support/docs/security/flexvpn/200555-FlexVPN-AnyConnect-IKEv2-Remote-Access.html
Which requirement is needed to use local authentication for Cisco AnyConnect Secure Mobility Clients that connect to a FlexVPN server?
Which requirement is needed to use local authentication for Cisco AnyConnect Secure Mobility Clients that connect to a FlexVPN server?A . use of certificates instead of username and passwordB . EAP-AnyConnectC . EAP query-identityD . AnyConnect profileView AnswerAnswer: B Explanation: https://www.cisco.com/c/en/us/support/docs/security/flexvpn/200555-FlexVPN-AnyConnect-IKEv2-Remote-Access.pdf Reference: https://www.cisco.com/c/en/us/support/docs/security/flexvpn/200555-FlexVPN-AnyConnect-IKEv2-Remote-Access.html