exam questions

Exam 300-730 All Questions

View all questions & answers for the 300-730 exam

Exam 300-730 topic 1 question 48 discussion

Actual exam question from Cisco's 300-730
Question #: 48
Topic #: 1
[All 300-730 Questions]


Refer to the exhibit. All internal clients behind the ASA are port address translated to the public outside interface that has an IP address of 3.3.3.3. Client 1 and client 2 have established successful SSL VPN connections to the ASA. What must be implemented so that "3.3.3.3" is returned from a browser search on the IP address?

  • A. Same-security-traffic permit inter-interface under Group Policy
  • B. Exclude Network List Below under Group Policy
  • C. Tunnel All Networks under Group Policy
  • D. Tunnel Network List Below under Group Policy
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
mazinhoo
Highly Voted 2 years, 3 months ago
Selected Answer: D
The correct answer is D, by tunneling only the inside subnets you will force the traffic for the rest to go via the Internet, so the clients will access 3.3.3.3 via the Internet.
upvoted 5 times
...
kylesam2017
Most Recent 9 months, 3 weeks ago
"C" is the correct answer here.
upvoted 1 times
...
mlant
1 year, 2 months ago
Selected Answer: C
We should tunnel all the traffic to ASA, answer is C.
upvoted 2 times
...
netizen937
1 year, 7 months ago
Selected Answer: C
In theory D could be correct, but only if you know the remote search server that the browser will be using to find the IP, to add it to the split tunnel list. Since it is not specified, we have to assume either multiple unknown servers or all public servers with this capability need to work, therefore C is the best answer where all traffic will be tunneled to egress from 3.3.3.3.
upvoted 1 times
...
Net4dd
1 year, 8 months ago
Selected Answer: C
Tunnel All will force public traffic through the ASA internet connection, instead of being split tunneled
upvoted 1 times
...
AF_Nick
2 years, 3 months ago
Selected Answer: C
cs51 is correct. Tunneling all traffic through the ASA. Answer C.
upvoted 3 times
...
cs51
2 years, 3 months ago
The browser's ip is the ASA's public ip 3.3.3.3. This means the traffic is initiated from ASA. So the vpn client should tunnel all traffic to ASA. The answer is C.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago