exam questions

Exam 300-730 All Questions

View all questions & answers for the 300-730 exam

Exam 300-730 topic 1 question 122 discussion

Actual exam question from Cisco's 300-730
Question #: 122
Topic #: 1
[All 300-730 Questions]

An administrator must guarantee that remote access users are able to reach printers on their local LAN after a VPN session is established to the headquarters. All other traffic should be sent over the tunnel. Which split-tunnel policy reduces the configuration on the ASA headend?

  • A. include specified
  • B. exclude specified
  • C. tunnel specified
  • D. dynamic exclude
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
shadow2020
9 months, 4 weeks ago
to all the ppl who are saying exclude, specify = traffic matching the ACL will be sent as a clear text while the rest of the traffic will be encrypted/tunnelled. enlighten me: how is the admin going to know your private network? let's say your is 172.16.1.x and mine is 10.11.22.x or whatever. Help me out on how to figure this one out. tunnel specified = matching the ACL will be encrypted and rest of the traffic will be in clear text -> admin knows their netowrks, correct?
upvoted 3 times
...
kylesam2017
10 months, 4 weeks ago
To guarantee that remote access users can reach printers on their local LAN while sending all other traffic over the VPN tunnel, the split-tunnel policy that reduces configuration on the ASA headend is "exclude specified." The "exclude specified" split-tunnel policy allows you to define specific traffic or subnets that should not be sent over the VPN tunnel. In this case, you would specify the printers' IP addresses or the subnet they belong to in the split-tunnel configuration. By using the "exclude specified" split-tunnel policy, you only need to define the IP addresses or subnets that should bypass the VPN tunnel. All other traffic will automatically be sent over the VPN tunnel, simplifying the configuration on the ASA headend. This approach allows remote access users to access printers on their local LAN directly, without routing that traffic through the VPN tunnel, while still ensuring that all other traffic is securely transmitted over the tunnel
upvoted 2 times
pfrank
9 months, 2 weeks ago
I would say tunnel specified but the question states which tunnel configuration would reduce configuration overhead. So, I believe that exclude specified is the best answer.
upvoted 1 times
...
...
mjuarez20
1 year ago
Selected Answer: C
It could be B.... but how do you know the "local network" where the users are conecting from? It could be their home, a restaurant, an airport... so how do you know which network to exclude only? I would go with C. Tunnel the network I know for sure it is on the company.
upvoted 1 times
shadow2020
9 months, 4 weeks ago
this is the problem I have, as you stated, I think you are correct
upvoted 1 times
...
...
gondohwe
1 year ago
B is correct since the local printer traffic is to be restricted from traversing the tunnel
upvoted 2 times
...
mihaid
1 year, 2 months ago
Selected Answer: B
B - because it refers to the printer /local network to be excluded C - nor correct , because the example does not refer to specify the headquarters range to pe sent over tunnel Like always the questions are f,,ed up to raise doubt on your judgement
upvoted 3 times
...
Anonymous983475
1 year, 5 months ago
Selected Answer: B
B is the correct answer here
upvoted 2 times
...
netizen937
1 year, 8 months ago
Selected Answer: B
You could in theory "tunnel specified" and list every subnet aside from the local one in the split tunnel list, but that is cumbersome and clearly not the best answer from the "reduce the configuration" requirement. Exclude only the local subnet and continue with your day.
upvoted 3 times
...
mazinhoo
1 year, 10 months ago
Selected Answer: B
you need to send everything via the tunnel, only the local LAN would go vi the PC NIC, so the answer would be exclude specified
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago