nerdexam
Cisco

350-701 · Question #169

Refer to the exhibit. Traffic is not passing through IPsec site-to-site VPN on the Firepower Threat Defense appliance. What is causing this issue?

The correct answer is D. The access control policy is not allowing VPN traffic in. We see traffic is comming in but no traffic is going into the tunnel so its likely a access policy wrong or missing.

Submitted by yuriko_h· Mar 30, 2026Network Security

Question

Refer to the exhibit. Traffic is not passing through IPsec site-to-site VPN on the Firepower Threat Defense appliance. What is causing this issue?

Exhibit

350-701 question #169 exhibit

Options

  • ASite-to-site VPN peers are using different encryption algorithms.
  • BSite-to-site VPN preshared keys are mismatched.
  • CNo split-tunnel policy is defined on the Firepower Threat Defense appliance.
  • DThe access control policy is not allowing VPN traffic in.

How the community answered

(42 responses)
  • A
    24% (10)
  • B
    10% (4)
  • C
    7% (3)
  • D
    60% (25)

Explanation

We see traffic is comming in but no traffic is going into the tunnel so its likely a access policy wrong or missing.

Topics

#IPsec VPN#FTD#Access Control Policy#Troubleshooting

Community Discussion

No community discussion yet for this question.

Full 350-701 Practice