ETExamTower
Q15Secure Network Access, Visibility, and Enforcement

A small organization must reduce VPN bandwidth usage on its headend Cisco ASA so bandwidth remains available for VPN users who require access to corporate resources on the local HQ network, 10.0.0.0/24. How can this be achieved without adding devices to the network?

← → navigate · a answer
Community votes
C
100% (2)
A
0% (0)
B
0% (0)
D
0% (0)
Discussion · 3
5
C. Split tunneling lets the VPN client decide which network traffic goes through the VPN tunnel and which traffic goes through the local internet connection. By setting split tunneling to only tunnel traffic for the 10.0.0.0/24 network, the organization can lower the VPN bandwidth load on the headend Cisco ASA. In this way, only the required traffic to reach corporate resources on the local HQ network goes through the VPN, while other non-corporate traffic can go through the local internet connection, thereby reducing the VPN load.
1
Answer not C?
C 1
Selected Answer: C This question kind of sucks imo, I think the point is not to tunnel-all when bandwidth is tight? Pretty sure you could use QoS on decrypted SSLVPn traffic if you wanted to.