ExamGecko
Question list
Search
Search

Related questions











Question 38 - 300-730 discussion

Report
Export

Refer to the exhibit.

Client 1 cannot communicate with client 2. Both clients are using Cisco AnyConnect and have established a successful SSL VPN connection to the hub AS

A.

Which command on the ASA is missing?

Answers
A.

Which command on the ASA is missing?

B.

dns-server value 10.1.1.2

Answers
B.

dns-server value 10.1.1.2

C.

same-security-traffic permit intra-interface

Answers
C.

same-security-traffic permit intra-interface

D.

same-security-traffic permit inter-interface

Answers
D.

same-security-traffic permit inter-interface

E.

dns-server value 10.1.1.3

Answers
E.

dns-server value 10.1.1.3

Suggested answer: B

Explanation:

The same-security-traffic intra-interface command lets traffic enter and exit the same interface, which is normally not allowed. This feature might be useful for VPN traffic that enters an interface, but is then routed out the same interface.

The VPN traffic might be unencrypted in this case, or it might be reencrypted for another VPN connection. For example, if you have a hub and spoke VPN network, where the security appliance is the hub, and remote VPN networks are spokes, for one spoke to communicate with another spoke, traffic must go into the security appliance and then out again to the other spoke.

asked 10/10/2024
Francis Sailer
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first