ExamGecko
Question list
Search
Search

Question 553 - 350-701 discussion

Report
Export

During a recent security audit a Cisco IOS router with a working IPSEC configuration using IKEv1 was flagged for using a wildcard mask with the crypto isakmp key command The VPN peer is a SOHO router with a dynamically assigned IP address Dynamic DNS has been configured on the SOHO router to map the dynamic IP address to the host name of vpn sohoroutercompany.com In addition to the command crypto isakmp key Cisc425007536 hostname vpn.sohoroutercompany.com what other two commands are now required on the Cisco IOS router for the VPN to continue to function after the wildcard command is removed? (Choose two)

A.

ip host vpn.sohoroutercompany.eom <VPN Peer IP Address>

Answers
A.

ip host vpn.sohoroutercompany.eom <VPN Peer IP Address>

B.

crypto isakmp identity hostname

Answers
B.

crypto isakmp identity hostname

C.

Add the dynamic keyword to the existing crypto map command

Answers
C.

Add the dynamic keyword to the existing crypto map command

D.

fqdn vpn.sohoroutercompany.com <VPN Peer IP Address>

Answers
D.

fqdn vpn.sohoroutercompany.com <VPN Peer IP Address>

E.

ip name-server <DNS Server IP Address>

Answers
E.

ip name-server <DNS Server IP Address>

Suggested answer: B, C
asked 10/10/2024
DAVID STAATZ
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first