exam questions

Exam 300-415 All Questions

View all questions & answers for the 300-415 exam

Exam 300-415 topic 1 question 123 discussion

Actual exam question from Cisco's 300-415
Question #: 123
Topic #: 1
[All 300-415 Questions]


Refer to the exhibit. Which command allows traffic through the IPsec tunnel configured in VPN 0?

  • A. service netsvc1 vpn1
  • B. service netsvc1 address 1.1.1.1
  • C. service FW address 1.1.1.1
  • D. service local
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
she_ccie
Highly Voted 2 years, 3 months ago
Half the battle is understanding the layout of this question. The question they are asking is "what is the next line in the config after the VPN1 configuration command at the bottom of the snippet" "From-vSmart" means configure this on vSmart. Service insertion requires configs on several devices. A service config needs to go on the edge router to advertise the service. The second config is done on the vSmart controller. Baio's doc is a good reference to learn the order of operation.
upvoted 9 times
Aldebeer
6 months, 1 week ago
Baio's doc ?
upvoted 1 times
...
...
Baio
Highly Voted 2 years, 3 months ago
Selected Answer: B
https://sdwan-docs.cisco.com/Product_Documentation/Software_Features/SD-WAN_Release_16.3/07Policy_Applications/02Service_Chaining/Service_Chaining_Configuration_Examples
upvoted 5 times
...
kentkyye
Most Recent 2 years, 5 months ago
For me it shud go to either service fw address 1.1.1.1 or service netsvc1 address 1.1.1.1 Here is the configuration procedure: Configure the firewall service on Hub-1. With this configuration, OMP on the Hub-1 router advertises a service route to the Cisco vSmart Controller. The service route contains a number of properties that identify the location of the firewall, including the TLOC of the hub router and a service label of svc-id-1, which identifies the service type as a firewall. vpn 10 service fw address 1.1.1.1
upvoted 1 times
MiraGod
1 year, 9 months ago
The is not fw configuration on the policy the correct answer should be B, it would be C if they were using fw but they are using netsvc
upvoted 1 times
...
Speirsington
2 years, 5 months ago
Agreed I go for B - https://www.cisco.com/c/dam/en/us/td/docs/routers/sdwan/configuration/config-18-4.pdf#page=476 vpn 10 service netsvc1 address 2.2.2.2
upvoted 3 times
Speirsington
2 years, 5 months ago
Just to add service netsvc1 VPN1 isn't valid vEdge1(config-vpn-1)# service netsvc1 vpn1 --------------------------------------^ syntax error: expecting address - IPv4 address interface - Interface tracker - Enable tracker for this Service
upvoted 3 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...