exam questions

Exam 300-730 All Questions

View all questions & answers for the 300-730 exam

Exam 300-730 topic 1 question 25 discussion

Actual exam question from Cisco's 300-730
Question #: 25
Topic #: 1
[All 300-730 Questions]


Refer to the exhibit. Which two commands under the tunnel-group webvpn-attributes result in a Cisco AnyConnect user receiving the AnyConnect prompt in the exhibit? (Choose two.)

  • A. group-url https://172.16.31.10/General enable
  • B. group-policy General internal
  • C. authentication aaa
  • D. authentication certificate
  • E. group-alias General enable
Show Suggested Answer Hide Answer
Suggested Answer: CE 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
jimmyjose
7 months, 2 weeks ago
The answers are A & E. https://www.cisco.com/c/en/us/td/docs/security/asa/asa72/configuration/guide/conf_gd/vpngrp.html Step 5 - To specify incoming URLs or IP addresses for the group, use the group-url command. Specifying a group URL or IP address eliminates the need for the user to select a group at login. When a user logs in, the security appliance looks for the user's incoming URL or address in the tunnel-group-policy table. If it finds the URL or address and if group-url is enabled in the tunnel group, then the security appliance automatically selects the associated tunnel group and presents the user with only the username and password fields in the login window. The questions asks which two commands under the tunnel-group webvpn-attributes result in a Cisco AnyConnect user receiving the AnyConnect prompt. It does not ask whether authentication attempts are successful. Here, the keyword is 'AnyConnect prompt'.
upvoted 2 times
fukumoto0925
2 months, 3 weeks ago
How about this reason for discarding A?->"The drop-down list does not appear if you connect to the ASA using a group-url, as the purpose of the group-url is to perform the group selection" https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/98580-enable-group-dropdown.html
upvoted 1 times
...
...
haydenme97
7 months, 3 weeks ago
A&E For each group URL or address, enter a group-URL command. You can optionally explicitly enable (the default) or disable each URL or alias: hostname(config-tunnel-webvpn)# group-url url [enable | disable] hostname(config-tunnel-webvpn)# group-alias "Cisco Remote Access" enable hostname(config-tunnel-webvpn)# group-url http://www.cisco.com enable
upvoted 2 times
...
starletka
9 months, 4 weeks ago
Selected Answer: CE
E to enable alias is definitely required both B and C are required too but its always assumed that they are already done. B group policy is not required as Default can be used C if AAA is not configured than authentication will not work.
upvoted 3 times
...
kylesam2017
10 months, 1 week ago
"C and E" appears to be correct answers here:
upvoted 2 times
...
Rosh8787
10 months, 2 weeks ago
BE is the most appropriate answer
upvoted 1 times
...
mjuarez20
12 months ago
Selected Answer: CE
C and E seems correct, because AAA authentication is done under tunnel group config, and it will ask for username and password. And the group-list under tunnel group as well, it will asks to select from the drop down menu.
upvoted 2 times
...
Acnaris
1 year, 1 month ago
Selected Answer: CE
https://www.cisco.com/c/en/us/td/docs/security/asa/asa72/configuration/guide/conf_gd/vpngrp.html
upvoted 3 times
...
marges
1 year, 3 months ago
C and E are correct. All commands are present under tunnel-group webvpn-attributes, only "group-policy XXX internal" is a hidden command. authentication aaa is set by default, so only answer E would suffice.
upvoted 1 times
...
Khs01
1 year, 3 months ago
Selected Answer: CE
authentication aaa group-alias asdf enable are the commands under tunnel-group
upvoted 2 times
...
spambox730
1 year, 4 months ago
Selected Answer: AE
The only 2 commands under tunnel-group webvpn attributes are group-alias and group-url. All the others are somewhere else in the configuration not under tunnel-group webvpn attributes.
upvoted 1 times
...
Net4dd
1 year, 8 months ago
Selected Answer: BE
From another lab: group-policy SALES internal group-policy SALES attributes webvpn url-entry enable ! tunnel-group STUNNEL type remote-access tunnel-group STUNNEL general-attributes default-group-policy SALES tunnel-group STUNNEL webvpn-attributes group-alias SALES enable
upvoted 3 times
...
Net4dd
1 year, 8 months ago
Selected Answer: CE
C and E seems correct https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/98580-enable-group-dropdown.html
upvoted 2 times
...
LouisVuitton
2 years ago
Selected Answer: CE
C & E tunnel-group attribute
upvoted 2 times
...
mazinhoo
2 years, 3 months ago
the correct answers are C & E , the questions ask about commands under tunnel-group attribute, authentication and group-alias are under the tunnel-group
upvoted 3 times
...
nospampls
2 years, 7 months ago
B and E are correct B enables the group-policy to check login-attempts against the internal (local) users storage E creates the Alias for the Tunnel-Group
upvoted 2 times
...
Carlj007
2 years, 10 months ago
correct answer are C and E
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago