Cisco (300-730-SVPN) Exam Questions And Answers page 2
Which command shows the smart default configuration for an IPsec profile?
ipsec profile does not have any smart default configuration
show smart-defaults ipsec profile
show crypto ipsec profile default
Implement and Troubleshoot Secure Communications
Secure Communications Architectures and Solutions
Refer to the exhibit. The DMVPN tunnel is dropping randomly and no tunnel protection is configured. Which spoke configuration mitigates tunnel drops?
Implement and Troubleshoot Secure Communications
Secure Communications Architectures and Solutions
Which benefit of FlexVPN is a limitation of DMVPN using IKEv1?
GRE encapsulation allows for forwarding of non-IP traffic.
IKE implementation can install routes in routing table.
NHRP authentication provides enhanced security.
Dynamic routing protocols can be configured.
Architecture and Design
Implement and Troubleshoot Secure Communications
Which technology and VPN component allows a VPN headend to dynamically learn post NAT IP addresses of remote routers at different sites?
DMVPN with ISAKMP
GETVPN with ISAKMP
DMVPN with NHRP
GETVPN with NHRP
Architecture and Design
Implement and Troubleshoot Secure Communications
What configuration is set by this command set?
Single Choice
Refer to the exhibit. What is configured as a result of this command set?
FlexVPN client profile for IPv6
FlexVPN server to authorize groups by using an IPv6 external AAA
FlexVPN server for an IPv6 dVTI session
FlexVPN server to authenticate IPv6 peers by using EAP
Implement and Troubleshoot Secure Communications
Secure Communications Architectures and Solutions
Refer to the exhibit. The customer can establish a Cisco AnyConnect connection without using an XML profile. When the host "ikev2" is selected in the AnyConnect drop down, the connection fails. What is the cause of this issue?
The HostName is incorrect.
The IP address is incorrect.
Primary protocol should be SSL.
UserGroup must match connection profile.
Implement and Troubleshoot Secure Communications
Secure Communications Architectures and Solutions
Which command automatically initiates a smart tunnel when a user logs in to the WebVPN portal page?
auto-upgrade
auto-connect
auto-start
auto-run
Implement and Troubleshoot Secure Communications
Secure Communications Architectures and Solutions
Refer to the exhibit. The DMVPN tunnel is dropping randomly and no tunnel protection is configured. Which spoke configuration mitigates tunnel drops?
Implement and Troubleshoot Secure Communications
Secure Communications Architectures and Solutions
Refer to the exhibit. The VPN tunnel between the FlexVPN spoke and FlexVPN hub 192.168.0.12 is failing. What should be done to correct this issue?
Add the address 192.168.0.12 255.255.255.255 command to the keyring configuration.
Add the match fvrf any command to the IKEv2 policy.
Add the aaa authorization group psk list Flex_AAA Flex_Auth command to the IKEv2 profile configuration.
Add the tunnel mode gre ip command to the tunnel configuration.
Architecture and Design
Implement and Troubleshoot Secure Communications
Refer to the exhibit. Which two conclusions should be drawn from the DMVPN phase 2 configuration? (Choose two.)
Next-hop-self is required.
EIGRP neighbor adjacency will fail.
EIGRP is used as the dynamic routing protocol.
EIGRP route redistribution is not allowed.
Spoke-to-spoke communication is allowed.
Implement and Troubleshoot Secure Communications
Secure Communications Architectures and Solutions
Comments