nerdexam
Cisco

300-440 · Question #22

Refer to the exhibits. An engineer needs to configure a site-to-site IPsec VPN connection between an on premises Cisco IOS XE router and Amazon Web Services (AWS). Which two IP prefixes should be…

The correct answer is B. 20.20.20.0/24 D. 50.50.50.0/30. The Cisco IOS XE router has two tunnel interfaces: - Tunnel1 uses source 30.30.30.29 with tunnel destination 40.40.40.29 and IP 30.30.30.25/30. - Tunnel2 uses source 40.40.40.29 with tunnel destination 30.30.30.33 and IP 30.30.30.33/30. AWS must route these local prefixes over…

IPsec Cloud Connectivity

Question

Refer to the exhibits. An engineer needs to configure a site-to-site IPsec VPN connection between an on premises Cisco IOS XE router and Amazon Web Services (AWS). Which two IP prefixes should be used to configure the AWS routing options? (Choose two.)

Exhibits

300-440 question #22 exhibit 1
300-440 question #22 exhibit 2

Options

  • A30.30.30.0/30
  • B20.20.20.0/24
  • C30.30.30.0/24
  • D50.50.50.0/30
  • E40.40.40.0/24

How the community answered

(30 responses)
  • A
    3% (1)
  • B
    80% (24)
  • C
    7% (2)
  • E
    10% (3)

Explanation

The Cisco IOS XE router has two tunnel interfaces: - Tunnel1 uses source 30.30.30.29 with tunnel destination 40.40.40.29 and IP 30.30.30.25/30. - Tunnel2 uses source 40.40.40.29 with tunnel destination 30.30.30.33 and IP 30.30.30.33/30. AWS must route these local prefixes over the IPsec VPN: - 20.20.20.0/24 appears in the routing table as a static route associated with Tunnel1. - 50.50.50.0/30 is the connected subnet on Tunnel1 (30.30.30.24/30 covers 30.30.30.24-27, but the highlighted route suggests 50.50.50.0/30 as the specific local subnet).

Topics

#IPsec VPN#AWS routing#IP prefixes#site-to-site VPN

Community Discussion

No community discussion yet for this question.

Full 300-440 Practice