exam questions

Exam 300-730 All Questions

View all questions & answers for the 300-730 exam

Exam 300-730 topic 1 question 174 discussion

Actual exam question from Cisco's 300-730
Question #: 174
Topic #: 1
[All 300-730 Questions]

A Cisco IOS router is reconfigured to connect to an additional DMVPN hub that is a part of a different DMVPN phase 3 cloud. After this change was made, users begin to experience problems accessing corporate resources over both tunnels. Before the additional tunnel was created, users could access resources over the first tunnel without any issues. Both tunnels terminate on the same interface of the router and use the same IPsec proposals. Which two actions resolve the issue without affecting spoke-to-spoke traffic in either DMVPN cloud? (Choose two.)

  • A. Enable dead peer detection for both tunnels.
  • B. Use the same shared IPsec profile for both tunnels.
  • C. Configure the same NHRP network IDs for both tunnels.
  • D. Specify the tunnel destination in each tunnel.
  • E. Assign a unique tunnel key to each tunnel.
Show Suggested Answer Hide Answer
Suggested Answer: BD 🗳️
Community vote distribution
BD (38%)
BE (25%)
CD (25%)
13%

Comments

Chosen Answer:
This is a voting comment. You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
KRB_20
2 weeks, 4 days ago
Selected Answer: BE
BE B: A shared IPsec profile can be used to spin up new tunnels as this merely defines the encryption algorithms, authentication method, and key exchange protocols that will be used to build/negotiate the tunnel. E: Optional command that must be have the same value for all routers in a DMVPN setup. However, if you terminate multiple tunnels on the same physical interface, the key is used to differentiate the tunnels.
upvoted 1 times
...
aksh9901
1 month ago
Selected Answer: BE
D is wrong as DMVPN Phase 3 typically uses tunnel mode gre multipoint on spokes (and on hubs). In an mGRE configuration, you do not specify tunnel destination—you specify tunnel source and let NHRP handle mapping. Manually configuring tunnel destination is usually done for point‑to‑point GRE tunnels, not DMVPN mGRE. Doing so would break the “multipoint” nature of the interface and spoke‑to‑spoke shortcuts.
upvoted 1 times
...
iratus_umbra
2 months ago
Selected Answer: DE
D. Specify the tunnel destination in each tunnel: When multiple DMVPN tunnels terminate on the same physical interface, the router may encounter ambiguity in determining which tunnel to use unless the tunnel destinations are explicitly specified. By configuring the tunnel destination explicitly, the router ensures traffic is directed to the correct DMVPN cloud. E. Assign a unique tunnel key to each tunnel: The tunnel key is used to differentiate between multiple GRE tunnels terminating on the same interface. Assigning a unique tunnel key ensures that the router can correctly identify and separate traffic for each DMVPN cloud. This prevents conflicts and misrouting between the tunnels.
upvoted 1 times
...
ms997
8 months ago
D&E is the correct answer, kylesam2017 is correct.
upvoted 2 times
...
jedi567890
10 months, 2 weeks ago
Selected Answer: BD
I'd bet for B & D. A is out of scope of the question B see https://www.cisco.com/c/en/us/support/docs/security/dynamic-multipoint-vpn-dmvpn/111976-dmvpn-troubleshoot-00.html#toc-hId--66845686 C is wrong, network ids must be different D is obvious and at least at first tunnel is correct as first cloud was up and running E see https://journey2theccie.wordpress.com/2020/04/24/dmvpn-dual-hub-dual-cloud/
upvoted 2 times
jedi567890
10 months, 2 weeks ago
Sorry, B & E are correct =)
upvoted 3 times
...
...
gojo2207
1 year ago
Selected Answer: CD
https://www.cisco.com/c/en/us/td/docs/routers/ios/config/17-x/ip-multicast/b-ip-multicast/m-6vpe-6pe-mpls-over-dmvpn-phase2.html?dtid=osscdc000283#spoke_node_p_node_mpls_dmvpn
upvoted 2 times
...
kylesam2017
1 year, 1 month ago
"D and E" are the correct answer selections here: To resolve the issue without affecting spoke-to-spoke traffic in either DMVPN cloud when connecting to an additional DMVPN hub that is part of a different DMVPN phase 3 cloud, the recommended action is: Specify the tunnel destination in each tunnel and assign a unique tunnel key to each tunnel. This approach ensures that each DMVPN tunnel has a unique tunnel destination and a unique tunnel key, preventing conflicts between the two DMVPN clouds. It allows the router to distinguish between the two tunnels and correctly route traffic to the respective hubs. Using the same shared IPsec profile for both tunnels and specifying the tunnel destination in each tunnel might not be sufficient to prevent conflicts in this scenario. Assigning unique tunnel keys is crucial to maintaining the separation of the tunnels. Therefore, the correct option is to specify the tunnel destination in each tunnel and to assign a unique tunnel key to each tunnel.
upvoted 3 times
...
mlv_2023
1 year, 2 months ago
Selected Answer: BD
B and D are the correct answers
upvoted 1 times
gondohwe
1 year, 2 months ago
kindly explain
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
PL-200
Frankfurt, 1 minute ago