Cisco
350-701 · Question #169
Refer to the exhibit. Traffic is not passing through IPsec site-to-site VPN on the Firepower Threat Defense appliance. What is causing this issue?
The correct answer is D. The access control policy is not allowing VPN traffic in. We see traffic is comming in but no traffic is going into the tunnel so its likely a access policy wrong or missing.
Submitted by yuriko_h· Mar 30, 2026Network Security
Question
Refer to the exhibit. Traffic is not passing through IPsec site-to-site VPN on the Firepower Threat Defense appliance. What is causing this issue?
Exhibit
Options
- ASite-to-site VPN peers are using different encryption algorithms.
- BSite-to-site VPN preshared keys are mismatched.
- CNo split-tunnel policy is defined on the Firepower Threat Defense appliance.
- DThe access control policy is not allowing VPN traffic in.
How the community answered
(42 responses)- A24% (10)
- B10% (4)
- C7% (3)
- D60% (25)
Explanation
We see traffic is comming in but no traffic is going into the tunnel so its likely a access policy wrong or missing.
Topics
#IPsec VPN#FTD#Access Control Policy#Troubleshooting
Community Discussion
No community discussion yet for this question.
