Which option shows the correct traffic selectors for the child SA on the remote ASA, when the headquarter ASA initiates the tunnel?

300-209-implementing-cisco-secure-mobility-solutions-simos_img_033

300-209-implementing-cisco-secure-mobility-solutions-simos_img_034

300-209-implementing-cisco-secure-mobility-solutions-simos_img_035
Which option shows the correct traffic selectors for the child SA on the remote ASA, when the headquarter ASA initiates the tunnel?
A. Local selector 192.168.33.0/0-192.168.33.255/65535 Remote selector 192.168.20.0/0-192.168.20.255/65535
B. Local selector 192.168.33.0/0-192.168.33.255/65535 Remote selector 192.168.22.0/0-192.168.22.255/65535
C. Local selector 192.168.22.0/0-192.168.22.255/65535 Remote selector 192.168.33.0/0-192.168.33.255/65535
D. Local selector 192.168.33.0/0-192.168.33.255/65535 Remote selector 0.0.0.0/0 – 0.0.0.0/65535
E. Local selector 0.0.0.0/0 – 0.0.0.0/65535 Remote selector 192.168.22.0/0 -192.168.22.255/65535

cisco-exams

5 thoughts on “Which option shows the correct traffic selectors for the child SA on the remote ASA, when the headquarter ASA initiates the tunnel?

  1. Well, remote network is set to any on the remote AS. So the correct answer is D. Also it states in the question that all traffic including internet traffic needs to be sent to HQ. If B is the correct answer then only traffic coming from 33 subnet going to 22 subnet would hit the tunnel.

Leave a Reply

Your email address will not be published. Required fields are marked *


The reCAPTCHA verification period has expired. Please reload the page.