Weekend Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = simple70

Pass the Cisco CCNP Security 300-730 Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam 300-730 Premium Access

View all detail and faqs for the 300-730 exam


520 Students Passed

84% Average Score

96% Same Questions
Viewing page 1 out of 5 pages
Viewing questions 1-10 out of questions
Questions # 1:

Which two components are required in a Cisco IOS GETVPN key server configuration? (Choose two.)

Options:

A.

RSA key

B.

IKE policy

C.

SSL cipher

D.

GRE tunnel

E.

L2TP protocol

Questions # 2:

Refer to the exhibit.

Question # 2

A network engineer is configuring a remote access SSLVPN and is unable to complete the connection using local credentials. What must be done to remediate this problem?

Options:

A.

Enable the client protocol in the Cisco AnyConnect profile.

B.

Configure a AAA server group to authenticate the client.

C.

Change the authentication method to local.

D.

Configure the group policy to force local authentication.

Questions # 3:

A network engineer must expand a company's Cisco AnyConnect solution. Currently, a Cisco ASA is set up in North America and another will be installed in Europe with a different IP address. Users should connect to the ASA that has the lowest Round Trip Time from their network location as measured by the AnyConnect client. Which solution must be implemented to meet this requirement?

Options:

A.

VPN Load Balancing

B.

IP SLA

C.

DNS Load Balancing

D.

Optimal Gateway Selection

Questions # 4:

Refer to the exhibit.

Question # 4

Which type of VPN is being configured, based on the partial configuration snippet?

Options:

A.

GET VPN with COOP key server

B.

GET VPN with dual group member

C.

FlexVPN load balancer

D.

FlexVPN backup gateway

Questions # 5:

Which Cisco AnyConnect component ensures that devices in a specific internal subnet are only accessible using port 443?

Options:

A.

routing

B.

WebACL

C.

split tunnel

D.

VPN filter

Questions # 6:

A network engineer must design a remote access solution to allow contractors to access internal servers. These contractors do not have permissions to install applications on their computers. Which VPN solution should be used in this design?

Options:

A.

IKEv2 AnyConnect

B.

Clientless

C.

Port forwarding

D.

SSL AnyConnect

Questions # 7:

Refer to the exhibit.

Question # 7

An IKEv2 site-to-site tunnel between an ASA and a remote peer is not building successfully. What will fix the problem based on the debug output?

Options:

A.

Ensure crypto IPsec policy matches on both VPN devices.

B.

Install the correct certificate to validate the peer.

C.

Correct crypto access list on both VPN devices.

D.

Specify the peer IP address in the tunnel group name.

Questions # 8:

Refer to the exhibit.

Question # 8

An engineer is diagnosing an issue that occurred after a router at a branch site was assigned a new address. Based on the debugs, what must be done to resolve this issue?

Options:

A.

Add the remote peer’s IP address to the server's IKEv2 keyring.

B.

Ensure that the correct preshared keys are set on both sides.

C.

Ensure that the UDP 500 packets between devices are not dropped.

D.

Add the remote peer’s identity to the server’s IKEv2 profile.

Questions # 9:

Question # 9

An engineer is building an IKEv1 tunnel to a peer Cisco ASA, but the tunnel is failing. Based on the configuration in the exhibit, which action must be taken to allow the VPN tunnel to come up?

Options:

A.

Add a route for the 10.7.7.0/24 network to egress the outside interface.

B.

Enable IKEv1 on the outside interface.

C.

Change the IKEv1 policy number to be at least 256.

D.

Change the transform set mode to transport.

Questions # 10:

Refer to the exhibit.

Question # 10

Which type of VPN implementation is displayed?

Options:

A.

IKEv1 cluster

B.

IKEv2 backup gateway

C.

IKEv2 load balancer

D.

IKEv2 reconnect

Viewing page 1 out of 5 pages
Viewing questions 1-10 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.