List of questions
Related questions
Question 120 - 300-730 discussion
Refer to the exhibit.
An engineer has configured a spoke to connect to a FlexVPN hub. The tunnel is up, but pings fail when the engineer attempts to reach host 192.168.200.10 behind the spoke, and traffic is sourced from host 192.168.100.3, which is behind the FlexVPN server. Based on packet captures, the engineer discovers that host 192.168.200.10 receives the icmp echo and sends an icmp reply that makes it to the inside interface of the spoke. Based on the output in the exhibit captured on the spoke by the engineer, which action resolves this issue?
Add the aaa authorization group cert list default default command to the spoke ikev2 profile.
Add the route set remote ipv4 192.168.200.0 255.255.255.0 command to the hub authorization policy.
Add the aaa authorization group cert list default default command to the hub ikev2 profile.
Add the route set remote ipv4 192.168.100.0 255.255.255.0 command to the spoke authorization policy.
0 comments
Leave a comment first