nerdexam
Cisco

300-415 · Question #272

The Cisco SD-WAN engineer is configuring service chaining for a next-generation firewall located at the headquarters. Which configuration creates the service?

The correct answer is B. Image showing Cisco vManage GUI: Monitor | Geography, VPN Group, Configuration selected, then Templates highlighted. Service chaining in Cisco SD-WAN for a next-generation firewall is typically configured using device and feature templates within vManage.

Policies

Question

The Cisco SD-WAN engineer is configuring service chaining for a next-generation firewall located at the headquarters. Which configuration creates the service?

Options

  • AImage showing Cisco vManage GUI: Monitor | Geography, VPN Group, Configuration selected, then Devices highlighted.
  • BImage showing Cisco vManage GUI: Monitor | Geography, VPN Group, Configuration selected, then Templates highlighted.
  • CImage showing Cisco vManage GUI: Monitor | Geography, VPN Group, Configuration selected, then Certificates highlighted.
  • DImage showing Cisco vManage GUI: Monitor | Geography, VPN Group, Configuration selected, then Network Design highlighted.

How the community answered

(44 responses)
  • A
    5% (2)
  • B
    80% (35)
  • C
    5% (2)
  • D
    11% (5)

Why each option

Service chaining in Cisco SD-WAN for a next-generation firewall is typically configured using device and feature templates within vManage.

AImage showing Cisco vManage GUI: Monitor | Geography, VPN Group, Configuration selected, then Devices highlighted.

While devices are involved, simply highlighting 'Devices' in the Monitor section is for viewing device status, not for creating service chaining configurations.

BImage showing Cisco vManage GUI: Monitor | Geography, VPN Group, Configuration selected, then Templates highlighted.Correct

Configuring service chaining for a next-generation firewall involves defining the service insertion points and routing policies, which are primarily managed through feature and device templates within the vManage GUI. Templates allow for standardized and scalable deployment of such services across the SD-WAN fabric.

CImage showing Cisco vManage GUI: Monitor | Geography, VPN Group, Configuration selected, then Certificates highlighted.

'Certificates' are used for device authentication and trust, not for defining service chaining logic.

DImage showing Cisco vManage GUI: Monitor | Geography, VPN Group, Configuration selected, then Network Design highlighted.

'Network Design' in the context of vManage navigation typically refers to topology visualization or high-level design, not the granular configuration of service chaining, which happens via templates.

Concept tested: SD-WAN service chaining configuration via templates

Source: https://www.cisco.com/c/en/us/td/docs/sdwan/sd-wan-release-20-x/configuration-guide/sdwan-security-cg/configure-service-chaining.html

Topics

#Service Chaining#vManage Configuration#Configuration Templates#NGFW

Community Discussion

No community discussion yet for this question.

Full 300-415 Practice