You have configured a dynamic VPN between your datacenter and your VPC. Your router says the tunnel is up and BGP is active, but for some reason, you are not seeing your routes propagate. What is most likely the issue?
A.
You need to configure the firewall for BGP.
B.
Your router does not support BFD.
C.
You need to obtain a new BGP MD5 key.
D.
You forgot to set route propagation to "yes" in the route table.
Suggested Answer:D🗳️
You forgot to set route propagation to "yes" in the route table. If the route table says BGP is active and the tunnel is up, then you do not have a firewall issue. BFD has nothing to do with route propagation. You do not need a BGP MD5 key for VPN.
I'd assume the person/team who prepared this question does not know BGP states at all yet given the work of preparing questions for this kind of an important exam. Horrible wording again !
If "BGP Active" refers to BGP state then answer is A.
If "BGP Active" means BGP is up and running (ie Established) then answer is D.
D is a wrong answer.
If router says that BGP is active, then there is a problem. Active means that router is TRYING to establish a BGP session with other BGP router. BGP state ESTABLISHED means that BGP routers are communicating correctly. BGP peers communicate on TCP port 179 and if port 179 is blocked then BGP will not work.
Explanation that “route table” says that BGP is active makes no sense. Route table does not say that. On Cisco, the command “show ip bgp summary” tells the state of BGP peering.
I believe that A is the best answer, am I right ?.
I completely agree. "Established" is the good state, not "active", in the Cisco world at least. However, we would have to assume "active" means good in the context here. Maybe other VPN vendors use "active" to indicate a good state. The firewall can't intercept the traffic because it is all encrypted in the IPSec.
If they meant active as in BGP STATE context, then both A and C would have been correct. Since only one answer can be chosen, i ll go with D
upvoted 1 times
...
...
This section is not available anymore. Please use the main Exam Page.ANS-C00 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
sapien45
3 years, 3 months agowahlbergusa
3 years, 7 months agoptpho
3 years, 7 months agozenfox
3 years, 7 months agoChauPhan
3 years, 8 months agoJamesTR
3 years, 8 months agoHuntkey
3 years, 8 months agoNimolee
3 years, 8 months ago