nerdexam
Exams300-415Questions#367
Cisco

300-415 · Question #367

300-415 Question #367: Real Exam Question with Answer & Explanation

The correct answer is D: The TCP connection is established between the client and the proxy, and between the proxy and the server.. This question asks for the initial step in establishing traffic flows when enabling TLS Proxy for security in an SD-WAN environment.

Security and Quality of Service

Question

What is the first step for setting up traffic flows when enabling TLS Proxy in SD-WAN for security?

Options

  • AThe sender authenticates the devices and individual users, and the receiver verifies the signature by decrypting the message with the public key of the sender.
  • BCertificate authorities in TLS Proxy issue certificates for authentication to all entities such as hosts, network devices, or users.
  • CWhen decryption policy is enabled for the flow, a client hello packet is received by Unified Threat Defense to define the decryption action.
  • DThe TCP connection is established between the client and the proxy, and between the proxy and the server.

Explanation

This question asks for the initial step in establishing traffic flows when enabling TLS Proxy for security in an SD-WAN environment.

Common mistakes.

  • A. Sender/receiver authentication and signature verification occur during the TLS handshake, which happens after the initial TCP connection establishment.
  • B. Certificate authorities issuing certificates is a prerequisite for TLS to function, but it's an administrative step, not the first step in setting up a traffic flow through the proxy.
  • C. Receiving a client hello packet and defining decryption action happens after the TCP connection is established and the client initiates the TLS handshake.

Concept tested. TLS Proxy traffic flow initiation

Reference. https://www.cisco.com/c/en/us/td/docs/routers/sdwan/configuration/security/ios-xe-17/security-book-xe/tls-proxy.html

Topics

#TLS Proxy#SD-WAN Security#Traffic Flow Setup#TCP Connection

Community Discussion

No community discussion yet for this question.

Full 300-415 Practice