QuestionQ28

Remote access VPNs

Question Image

Refer to the exhibit. All internal clients behind the ASA are port-address translated to the public outside interface with IP address 3.3.3.3. Client 1 and Client 2 have successfully established SSL VPN connections to the ASA. What must be implemented so that an IP-address browser search returns 3.3.3.3?

Explanation

A full-tunnel SSL VPN policy sends all client traffic through the ASA. The ASA then applies PAT using its outside-interface address, so an Internet IP-address lookup sees 3.3.3.3. Cisco documents that the tunnelall split-tunnel policy sends all traffic through the tunnel.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!