exam questions

Exam 300-415 All Questions

View all questions & answers for the 300-415 exam

Exam 300-415 topic 1 question 8 discussion

Actual exam question from Cisco's 300-415
Question #: 8
Topic #: 1
[All 300-415 Questions]

A network administrator is bringing up one WAN Edge router for branch connectivity. Which types of tunnels form when the WAN edge router connects to the
Cisco SD-WAN fabric?

  • A. DTLS or TLS tunnel with vSmart controller and IPsec tunnel with vBond controller
  • B. DTLS or TLS tunnel with vBond controller and IPsec tunnel with vManage controller
  • C. DTLS or TLS tunnel with vBond controller and IPsec tunnel with other WAN Edge routers
  • D. DTLS or TLS tunnel with vSmart controller and IPsec tunnel with other WAN Edge routers
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
HAMPI
Highly Voted 2 years, 7 months ago
D is the correct answer. 1. VBOND will make only DTLS connection, TLS connection will not happen between vBond and vEdge. 2. vBond connection is temporary 3. vEdges will make IPSec tunnels over data plane
upvoted 6 times
...
Mfanelo
Most Recent 6 months, 3 weeks ago
I go with D.
upvoted 1 times
...
khanda
2 years, 5 months ago
Selected Answer: D
vBond will only make a DTLS connection.
upvoted 3 times
...
akin5
2 years, 8 months ago
dear Team what is the solution to this Q An MPLS connection on R2 must extend to R1 Users behind R1 must have dual connectivity for data traffic Which configuration provides R1 control connectivity over the MPLS connection?
upvoted 1 times
...
khanda
2 years, 8 months ago
C is the correct answer, the minimal config on the Edge device contains the vBond IP or DNS name, so first comms would be to the vBond through TLS/DTLS tunnel connection. https://www.cisco.com/c/en/us/td/docs/routers/sdwan/configuration/sdwan-xe-gs-book/cisco-sd-wan-overlay-network-bringup.html
upvoted 1 times
khanda
2 years, 5 months ago
Correct answer is D. vBond do not utilise TLS but DTLS.
upvoted 1 times
...
...
serieus
3 years, 2 months ago
Technically C is also correct, but the DTLS tunnel to the vBond is torn down after the Edge receives the vManage & vSmart IP's. https://www.cisco.com/c/en/us/td/docs/routers/sdwan/configuration/sdwan-xe-gs-book/cisco-sd-wan-overlay-network-bringup.html
upvoted 1 times
serieus
3 years, 2 months ago
Have to correct myself. The vBond is locked to DTLS only so C is NOT correct.
upvoted 2 times
...
...
ramjam
3 years, 4 months ago
Correct. https://sdwan-docs.cisco.com/Product_Documentation/Software_Features/SD-WAN_Release_16.3/05Security/01Security_Overview
upvoted 2 times
...
CCNPWILL
3 years, 6 months ago
I believe this is correct a well.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago