CAS-005 · Question #133
SIMULATION An IPSec solution is being deployed. The configuration files for both the VPN concentrator and the AAA server are shown in the diagram. Complete the configuration files to meet the followin
Sign in or unlock CAS-005 to reveal the answer and full explanation for question #133. The question stem and answer options stay visible for context.
Question
SIMULATION An IPSec solution is being deployed. The configuration files for both the VPN concentrator and the AAA server are shown in the diagram. Complete the configuration files to meet the following requirements:
- The EAP method must use mutual certificate-based authentication (with issued client
certificates).
- The IKEv2 cipher suite must be configured to the MOST secure authenticated mode of
operation.
- The secret must contain at least one uppercase character, one lowercase character, one
numeric character, and one special character, and it must meet a minimum length requirement of eight characters. INSTRUCTIONS Click on the AAA server and VPN concentrator to complete the configuration. Fill in the appropriate fields and make selections from the drop-down menus. If at any time you would like to bung back the initial state of the simulation, please click the Reset All button. Answer:
VPN Concentrator Proposal: aes256gcm128 Server IP: 10.1.0.10 (this is the AAA server) Secret: Str0ng@Key (example that meets all character requirements) AAA Server Default EAP type: tls IP Address: 10.1.2.1 (this is the VPN concentrator) Secret: Str0ng@Key (must match the VPN concentrator)
Exhibits
Unlock CAS-005 to see the answer
You've previewed enough free CAS-005 questions. Unlock CAS-005 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.





