nerdexam
Exams300-730Questions#213
Cisco

300-730 · Question #213

300-730 Question #213: Real Exam Question with Answer & Explanation

The correct answer is D: Enable the Clientless VPN protocol for the group policy.. The error 'Secure Client is not enabled on the VPN server' appears when the assigned group policy does not have the clientless SSL VPN tunnel protocol explicitly enabled.

Troubleshooting VPNs

Question

Refer to the exhibit. An engineer configures Clientless SSL VPN on a Cisco ASA. After the configuration, a user receives this error message in the browser during attempt to connect: Secure Client is not enabled on the VPN server. Which action must the engineer take to resolve the issue?

Options

  • AEnable the AnyConnect Premium license.
  • BConfigure a new WebVPN group policy for affected users.
  • CConfigure the auto-signon feature from the WebVPN attributes.
  • DEnable the Clientless VPN protocol for the group policy.

Explanation

The error 'Secure Client is not enabled on the VPN server' appears when the assigned group policy does not have the clientless SSL VPN tunnel protocol explicitly enabled.

Common mistakes.

  • A. The AnyConnect Premium license enables AnyConnect full-tunnel client access, not Clientless SSL VPN, which is a separate feature that does not require this license.
  • B. Creating a new group policy does not resolve the issue unless the new policy also explicitly has the clientless VPN tunnel protocol enabled.
  • C. The auto-signon feature handles automatic credential submission to internal web applications through the VPN portal and does not control whether users can establish the VPN session itself.

Concept tested. Clientless SSL VPN group policy tunnel protocol enablement

Reference. https://www.cisco.com/c/en/us/td/docs/security/asa/asa96/configuration/vpn/asa-96-vpn-config/webvpn-configure-gateway.html

Topics

#Clientless SSL VPN#group policy#VPN protocol#WebVPN

Community Discussion

No community discussion yet for this question.

Full 300-730 Practice