nerdexam
Cisco

350-701 · Question #908

350-701 Question #908: Real Exam Question with Answer & Explanation

Sign in or unlock 350-701 to reveal the answer and full explanation for question #908. The question stem and answer options stay visible for context.

Submitted by marco_it· Mar 30, 2026

Question

An engineer must configure a new site-to-site VPN connection using Cisco Secure Firewall Threat Defense as node A and Cisco ASA as node B. These configurations were performed already in Cisco Secure Firewall Threat Defense: - Configure IKE and IPsec parameters. - Bypass access control. - Create an access control policy. Which action completes the configuration?

Options

  • AEnable IKEv2 on the outside interface.
  • BConfigure NAT exemption
  • CAdd a VPN client profile.
  • DCreate a tunnel group for the peer.

Unlock 350-701 to see the answer

You've previewed enough free 350-701 questions. Unlock 350-701 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Site-to-site VPN#Cisco FTD#Cisco ASA#NAT exemption
Full 350-701 Practice