PrepAway - Latest Free Exam Questions & Answers

Category: 642-648

642-648-Deploying Cisco ASA VPN Solutions (VPN v2.0)

What is the correct way to configure the SSL VPN tunnel to allow this application to run?

Your corporate finance department purchased a new non-web-based TCP application tool to run
on one of its servers. Certain finance employees need remote access to the software during
nonbusiness hours. These employees do not have “admin” privileges to their PCs.
What is the correct way to configure the SSL VPN tunnel to allow this application to run?

What did the junior network engineer configure incorrectly?

A junior network engineer configured the corporate Cisco ASA appliance to accommodate a new
temporary worker. For security reasons, the IT department wants to restrict the internal network
access of the new temporary worker to the corporate server, with an IP address of 10.0.4.10. After
the junior network engineer finished the configuration, an IT security specialist tested the account
of the temporary worker. The tester was able to access the URLs of additional secure servers from
the WebVPN user account of the temporary worker.

What did the junior network engineer configure incorrectly?

Exhibit:

To get the connection to work and transfer the demonstration, what should the engineer do?

An XYZ Corporation systems engineer, while making a sales call on the ABC Corporation headquarters, tried to access the XYZ sales demonstration folder to transfer a demonstration via FTP from an ABC conference room behind the firewall. The engineer could not reach XYZ through the remote-access VPN tunnel. From home the previous day, however, the engineer did connect to the XYZ sales demonstration folder and transferred the demonstration via IPsec over DSL.

To get the connection to work and transfer the demonstration, what should the engineer do?


Page 11 of 12« First...89101112