exam questions

Exam 300-425 All Questions

View all questions & answers for the 300-425 exam

Exam 300-425 topic 1 question 192 discussion

Actual exam question from Cisco's 300-425
Question #: 192
Topic #: 1
[All 300-425 Questions]



Refer to the exhibit. An engineer is about to establish a mobility peer connection between a Cisco Catalyst 9800-CL version 16.10.1 e and Cisco AireOS 5520 version 8.8.120.0. The data path between the 9800-CL and AireOS 5520 is up, but its control path is down. Based on the configuration, what is the root of the issue?

  • A. The data-link-encryption configuration is missing from the 9800-CL configuration.
  • B. CAPS is used to key in the MAC address in the IOS_XE configuration, which causes the control path to be down.
  • C. Encrypted mobility is being used in the 5520 configuration, which causes the control path to be down.
  • D. The certificate hash key is missing from the AireOS 5520 WLC mobility configuration, which causes the control path to be down.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Rododendron2
7 months, 2 weeks ago
Selected Answer: D
9800-CL - cloud based WLC - hash key is required in AireOS config C is not correct (control path encrypted by default)
upvoted 1 times
...
Jonycici
7 months, 4 weeks ago
Selected Answer: D
D is correct. The Cisco Catalyst 9800 Series control path is DTLS encrypted by default. Data path DTLS can be enabled when you add the mobility peer.
upvoted 1 times
...
Farhad123
9 months, 3 weeks ago
C. Encrypted mobility is being used in the 5520 configuration, which causes the control path to be down: This is correct. The AireOS 5520 configuration shows that encrypted mobility is enabled. Encrypted mobility requires additional configuration steps, such as exchanging certificates between the devices, to establish a secure control path. Since the control path is down, it's likely that these additional steps have not been completed.
upvoted 1 times
Jonycici
7 months, 3 weeks ago
9800s use control encryption by default, so you need to configure on the 5520. what is missing here is the hash.
upvoted 1 times
...
...
raresalexa_22
10 months, 2 weeks ago
Selected Answer: C
C. Encrypted mobility is being used in the 5520 configuration, which causes the control path to be down. Explanation: The AireOS 5520 configuration explicitly enables encrypted mobility (encrypt enable and data-dtls enable), which requires corresponding support on the 9800-CL. If the 9800-CL does not have compatible settings or the proper certificate setup, the control path will not establish correctly due to encryption mismatches. The key issue is likely related to encrypted mobility configurations not aligning properly between the devices, requiring either configuration adjustments or additional settings for compatibility.
upvoted 1 times
...
raresalexa_22
10 months, 2 weeks ago
C. Encrypted mobility is being used in the 5520 configuration, which causes the control path to be down. Explanation: The AireOS 5520 configuration explicitly enables encrypted mobility (encrypt enable and data-dtls enable), which requires corresponding support on the 9800-CL. If the 9800-CL does not have compatible settings or the proper certificate setup, the control path will not establish correctly due to encryption mismatches. The key issue is likely related to encrypted mobility configurations not aligning properly between the devices, requiring either configuration adjustments or additional settings for compatibility.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...