350-701 · Question #832
Refer to the exhibit. An engineer must configure a site-to-site VPN connection between SiteA and SiteB. The engineer already performed some configuration on the Cisco Adaptive Security Appliance…
The correct answer is B. tunnel-group 30.30.30.10 type ipsec-I21. To establish a site-to-site VPN on Cisco ASA, the configuration must include the following steps 1. Define the remote peer: In this case, 30.30.30.10 is the IP address of ASA_B's external 2. Specify the tunnel type: Use ipsec-IKEv1 for IKEv1 configuration. 3. Set IPsec…
Question
Refer to the exhibit. An engineer must configure a site-to-site VPN connection between SiteA and SiteB. The engineer already performed some configuration on the Cisco Adaptive Security Appliance ASA_A firewall. Which configurations must be performed next to complete the implementation?
Exhibit
Options
- Atunnel-group 192.168.10.0 255.255.255.0 type ipsec-121
- Btunnel-group 30.30.30.10 type ipsec-I21
- Ctunnel-group 192.168.11.0 255.255.255.0 type ipsec-121
- Dtunnel-group 20.20.20.10 type ipsec-I21
How the community answered
(18 responses)- A6% (1)
- B72% (13)
- C6% (1)
- D17% (3)
Explanation
To establish a site-to-site VPN on Cisco ASA, the configuration must include the following steps 1. Define the remote peer: In this case, 30.30.30.10 is the IP address of ASA_B's external 2. Specify the tunnel type: Use ipsec-IKEv1 for IKEv1 configuration. 3. Set IPsec attributes: Define the pre-shared key, which must match on both ASA_A and Chosen configuration correctly specifies the remote peer's IP address (30.30.30.10), configures the tunnel type as IPsec-IKEv1, and assigns the matching pre-shared key (cisco).
Topics
Community Discussion
No community discussion yet for this question.
