nerdexam
(ISC)2(ISC)2

CISSP · Question #1035

CISSP Question #1035: Real Exam Question with Answer & Explanation

Sign in or unlock CISSP to reveal the answer and full explanation for question #1035. The question stem and answer options stay visible for context.

Submitted by salim_om· Mar 5, 2026Communication and Network Security

Question

A new site's gateway isn't able to form a tunnel to the existing site-to-site Internet Protocol Security (IPsec) virtual private network (VPN) device at headquarters. Devices at the new site have no problem accessing resources on the Internet. When testing connectivity between the remote site's gateway, it was observed that the external Internet Protocol (IP) address of the gateway was set to 192.168.1.1. and was configured to send outbound traffic to the Internet Service Provider (ISP) gateway at4 192.168.1.2. Which of the following would be the BEST way to resolve the issue and get the remote site connected?

Options

  • AEnable IPSec tunnel mode on the VPN devices at the new site and the corporate headquarters.
  • BEnable Layer 2 Tunneling Protocol (L2TP) on the VPN devices at the new site and the corporate
  • CEnable Point-to-Point Tunneling Protocol (PPTP) on the VPN devices at the new site and the
  • DEnable Network Address Translation (NAT) - Traversal on the VPN devices at the new site and

Unlock CISSP to see the answer

You've previewed enough free CISSP questions. Unlock CISSP for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#IPsec VPN#NAT-Traversal#Network troubleshooting#Private IP addressing
Full CISSP PracticeBrowse All CISSP Questions