300-730 Implementing Secure Solutions with Virtual Private Networks (SVPN)

Loading demo links...

Showing 7–9 of 10 questions

Question 7 (Mixed Questions)

A network engineer must design a remote access solution to allow contractors to access internal servers. These contractors do not have permissions to install applications on their computers. Which VPN solution should be used in this design?

Select an option, then click Submit answer.

  • IKEv2 AnyConnect

  • Clientless

  • Port forwarding

  • SSL AnyConnect

Question 8 (New Update)

An engineer has successfully established a Phase 1 and Phase 2 tunnel between two sites. Site A has internal subnet 192.168.0.0/24 and Site B has internal subnet 10.0.0.0/24. The engineer notices that no packets are decrypted at Site B. Pings to 192.168.0.1 from internal Site B devices make it to the Site B router, and the Site A router has incrementing encrypt and decrypt counters. What must be done to ensure bidirectional communication between both sites?

Select an option, then click Submit answer.

  • Modify the routing at Site B so that traffic is sent to Site A.

  • Configure the correct DH group on both devices.

  • Allow protocol ESP or AH on the firewall in front of the Site B router.

  • Enable PFS on the headend device.

Question 9 (Troubleshooting using ASDM and CLI)

In a FlexVPN deployment, the spokes successfully connect to the hub, but spoke-to-spoke tunnels do not form. Which troubleshooting step solves the issue?

Select an option, then click Submit answer.

  • Verify the spoke configuration to check if the NHRP redirect is enabled.

  • Verify that the spoke receives redirect messages and sends resolution requests.

  • Verify the hub configuration to check if the NHRP shortcut is enabled.

  • Verify that the tunnel interface is contained within a VRF.