nerdexam
Huawei

H12-721 · Question #151

The following virtual firewall networking, USG provided outwardly rough business, VPN instance vfw1 coarse A, to the enterprise network diagram below. A foreign enterprise network users need to…

The correct answer is A. [USG] ip vpn-instance vfw1 vpn-id 1 B. [USG] ip vpn-instance vfw1 [USG-vpn-vfw1] route-distinguisher 1001 [USG-vpn-vfw1] quit C. [USG] nat server zone vpn-instance vfw1 untrust global 2.1.2.100 inside 192.168.1.2 vpn-instance. See the full explanation below for the reasoning.

Question

The following virtual firewall networking, USG provided outwardly rough business, VPN instance vfw1 coarse A, to the enterprise network diagram below. A foreign enterprise network users need to access via PC C. Server B in DMZ zone is NAT'ed. If I want to achieve this requirement, then I must have following key configuration? (Choose three answers)

Exhibit

H12-721 question #151 exhibit

Options

  • A[USG] ip vpn-instance vfw1 vpn-id 1
  • B[USG] ip vpn-instance vfw1 [USG-vpn-vfw1] route-distinguisher 1001 [USG-vpn-vfw1] quit
  • C[USG] nat server zone vpn-instance vfw1 untrust global 2.1.2.100 inside 192.168.1.2 vpn-instance
  • D[USG] nat address-group 1 2.1.2.5 2.1.3.10 vpn-instance vfw1

How the community answered

(38 responses)
  • A
    82% (31)
  • D
    18% (7)

Community Discussion

No community discussion yet for this question.

Full H12-721 Practice