nerdexam
Cisco

300-415 · Question #418

Refer to the exhibit. A customer wants to deploy service insertion at HQ in which traffic from VPN 1 must route to HQ from both sites to go through the firewall. No route leaking will be in place for

Sign in or unlock 300-415 to reveal the answer and full explanation for question #418. The question stem and answer options stay visible for context.

Policies

Question

Refer to the exhibit. A customer wants to deploy service insertion at HQ in which traffic from VPN 1 must route to HQ from both sites to go through the firewall. No route leaking will be in place for this activity. Which configuration meets the requirement at HQ?

Exhibit

300-415 question #418 exhibit

Options

  • Apolicy lists site-list device-1 site-id 1 control-policy firewall-service sequence 10 match route vpn 1 action accept set service FW ! apply-policy site-list device-1 control-policy firewall-service out
  • Bvpn 1 service FW address 10.0.0.2 interface ge0/2.1 description ""vpn 1"" ip address 10.0.0.1/28 no shutdown
  • Cvpn 1 service FW address 10.0.0.2 interface ge0/3.100 description ""vpn 11 FW Inside Interface"" ip address 1.1.1.1/29 no shutdown vpn 12 interface ge0/3.101 description ""vpn 12 FW Outside Interface"" ip address 2.2.2.1/29 no shutdown
  • Dvpn 1 service FW address 10.0.0.2 interface ge0/3.100 description ""vpn 1 FW Inside Interface"" ip address 1.1.1.1/28 no shutdown interface ge0/3.101 description ""vpn 1 FW Outside Interface"" ip address 2.2.2.1/29 no shutdown

Unlock 300-415 to see the answer

You've previewed enough free 300-415 questions. Unlock 300-415 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Service Insertion#Firewall Integration#VPN Configuration#SD-WAN Policies
Full 300-415 Practice