Refer to the exhibit. A new TAC engineer came to you for advice.
A GRE over IPsec tunnel was configured, but the tunnel is not coming up. What did the TAC engineer configure incorrectly?
A. The crypto isakmp configuration is not correct.
B. The crypto map configuration is not correct.
C. The interface tunnel configuration is not correct.
D. The network configuration is not correct; network 172.16.1.0 is missing.
where in exam topics or cert guide did you find IPsec? there is only grep config.
In old days ipsec was required on 300-101?
https://learningnetwork.cisco.com/community/certifications/ccnp/route_v2/exam-topics
https://icisco.org/wp-content/uploads/CCNP-ROUTE.pdf
Where the F is ipsec config in those links?
That TAC engineer is rubbish! Haha. He really needs to lab this stuff up so he understands what he is supporting. I would ace it.
The tunnel interface is wrong to… can we get correct fucking answers here?
Tunnel interface is not wrong – the ACL is wrong on this one as-well but that is not an option.
This exhibit belong to question 318.
the ACL is wrong.
The crypto isakmp configuration is not correct,
it should has the 192.168.2.1 instead of 172.16.1.2
the 172.16.1.2 is the other side ip address of the tunnel.