156-915.80 · Question #116
VPN Tunnel Sharing can be configured with any of the options below, EXCEPT One:
The correct answer is C. IP range based. VPN Tunnel Sharing provides interoperability and scalability by controlling the number of VPN tunnels created between peer Security Gateways. There are three available settings: One VPN tunnel per each pair of hosts One VPN tunnel per subnet pair One VPN tunnel per Security…
Question
VPN Tunnel Sharing can be configured with any of the options below, EXCEPT One:
Options
- AGateway-based
- BSubnet-based
- CIP range based
- DHost-based
How the community answered
(31 responses)- A13% (4)
- B3% (1)
- C81% (25)
- D3% (1)
Explanation
VPN Tunnel Sharing provides interoperability and scalability by controlling the number of VPN tunnels created between peer Security Gateways. There are three available settings: One VPN tunnel per each pair of hosts One VPN tunnel per subnet pair One VPN tunnel per Security Gateway pair You have three Gateways in a mesh community. Each gateway's VPN Domain is their internal network as defined on the Topology tab setting All IP Addresses behind Gateway based on Topology information. You want to test the route-based VPN, so you created VTIs among the Gateways and created static route entries for the VTIs. However, when you test the VPN, you find out the VPN still go through the regular domain IPsec tunnels instead of the routed VTI tunnels.
Topics
Community Discussion
No community discussion yet for this question.