300-710 · Question #24
300-710 Question #24: Real Exam Question with Answer & Explanation
The correct answer is C: Site-to-site VPN functionality is limited to the master unit, and all VPN connections are dropped if. Remote access VPN is not supported with clustering. VPN functionality is limited to the control unit and does not take advantage of the cluster high availability capabilities. If the control unit fails, all existing VPN connections are lost, and VPN users will see a disruption in
Question
What is a result of enabling Cisco FTD clustering?
Options
- AFor the dynamic routing feature, if the master unit fails, the newly elected master unit maintains all
- BIntegrated Routing and Bridging is supported on the master unit.
- CSite-to-site VPN functionality is limited to the master unit, and all VPN connections are dropped if
- DAll Firepower appliances can support Cisco FTD clustering.
Explanation
Remote access VPN is not supported with clustering. VPN functionality is limited to the control unit and does not take advantage of the cluster high availability capabilities. If the control unit fails, all existing VPN connections are lost, and VPN users will see a disruption in service. When a new control unit is elected, you must re-establish the VPN connections. guide-v64/clustering_for_the_firepower_threat_defense.html
Topics
Community Discussion
No community discussion yet for this question.