ETExamTower
Q8Remote access VPNs

Refer to the exhibit. Which VPN technology is permitted for users who connect to the Employee tunnel group?

Question exhibit
← → navigate · a answer
Community votes
D
100% (6)
A
0% (0)
B
0% (0)
C
0% (0)
Discussion · 9
D 7
Selected Answer: D the tunnel group Employee doens not have any specific group applied, which means it will use the dfltgrpPolicy; in the dfltgrpPolicy only clientless is enabled, so the correct answer is D, Clientless
3
The tunnel-group Employee has no entry for a specific default-group-policy like the Admin-Group. The group-policy DfltGrpPolicy is used instead. This allows only ssl-clientless. Answer D - clientless is correct.
D 2
Selected Answer: D When you configure other group policies, any attribute that you do not explicitly set takes its value from the default group policy. To view the default group policy. https://www.cisco.com/c/en/us/td/docs/security/asa/asa72/configuration/guide/conf_gd/vpngrp.html
D 2
Selected Answer: D D - nothing is defined in the Employee group-policy, so it falls back to the default group policy.
D 2
Selected Answer: D Employees do not have a group policy specified, so the default group policy will be used.
1
Users receive their attributes from group policies. A connection profile identifies the group policy for a specific connection. If you do not assign a specific group policy to a user, the default group policy for the connection applies https://www.cisco.com/c/en/us/td/docs/security/asa/asa94/config-guides/cli/vpn/asa-94-vpn-config/vpn-groups.html
1
D should be the correct answer.
1
Answer should be D Since there is no vpn-tunnel-protocol defnied under the Employee tunnel-group, this setting will be inherited from the DfltGrpPolicy And only ss-clientless is allowed in DfltGrpPolicy.
D 1
Selected Answer: D correct answer is D