SVPN 300-730 Exam QuestionsBrowse all questions from this exam

SVPN 300-730 Exam - Question 159


Which configuration allows a Cisco ASA to receive an IPsec connection from a peer with an unknown IP address?

Show Answer
Correct Answer: A

To allow a Cisco ASA to receive an IPsec connection from a peer with an unknown IP address, a dynamic crypto map configuration is used. Dynamic crypto maps allow the ASA to accept VPN connections from peers whose IP addresses are not known in advance, making it suitable for remote access VPN configurations where the client's IP address may change.

Discussion

2 comments
Sign in to comment
haydenme97
Sep 16, 2024

Dynamic Crypto Map https://www.cisco.com/c/en/us/td/docs/security/asa/asa94/config-guides/cli/vpn/asa-94-vpn-config/vpn-remote-access.html

GordieOption: A
Jan 24, 2025

Dynamic crypto maps define policy templates in which not all the parameters are configured. This lets the ASA receive connections from peers that have unknown IP addresses, such as remote access clients. From the link haydenme97 posted