Cisco 300-730 Certification Exam Sample Questions and Answers

CCNP Security Dumps, 300-730 Dumps, Cisco SVPN PDF, 300-730 PDF, CCNP Security VCE, Cisco CCNP Security Questions PDF, Cisco Exam VCE, Cisco 300-730 VCE, CCNP Security Cheat SheetBefore you write the Cisco CCNP Security (300-730) certification exam, you may have certain doubts in your mind regarding the pattern of the test, the types of questions asked in it, the difficulty level of the questions and time required to complete the questions. These Cisco Certified Specialist Network Security VPN Implementation (SVPN) sample questions and demo exam help you in removing these doubts and prepare you to take the test.

The best approach to pass your Cisco 300-730 exam is to challenge and improve your knowledge. To test your learning and identify improvement areas with actual exam format, we suggest you practice with Premium Cisco 300-730 Certification Practice Exam. The practice test is one of the most important elements of your Cisco Implementing Secure Solutions with Virtual Private Networks (SVPN) exam study strategy to discover your strengths and weaknesses, to improve your time management skills and to get an idea of the score you can expect.

Cisco 300-730 (SVPN) Sample Questions:

01. When troubleshooting FlexVPN spoke-to-spoke tunnels that are never established, which condition should be verified first?
a) NHRP shortcut routes exist on the spokes.
b) The spokes have sent a resolution request.
c) NHRP cache entries exist on the spokes.
d) NHRP redirect is enabled on the hub.
 
02. Which DMVPN feature allows spokes to be deployed with dynamically assigned public IP addresses?
a) NAT Traversal
b) 2547oDMVPN
c) NHRP
d) OSPF
 
03. Over which two transport mediums is FlexVPN deployed?
(Choose two.)
a) VPLS
b) 5G
c) MPLS
d) internet
e) DWDM
 
04. A network engineer has almost finished setting up a clientless VPN that allows remote users to access internal HTTP servers. Users must enter their username and password twice: once on the clientless VPN web portal and again to log in to the internal HTTP servers. The Cisco ASA and the HTTP servers authenticate users against the same Active Directory server.
Which next step allows users to enter their password only once?
a) Set up the Cisco ASA to authenticate users via a SAML 2.0 IDP.
b) Create smart tunnels for the HTTP servers.
c) Use LDAPS and add password management to the clientless tunnel group.
d) Configure auto-sign-on using NTLM authentication.
 
05. Which of the following sets of commands configures a group policy to allow traffic only to 172.20.1.50 on port 80?
a) vpn-asa1(config)# access-list FILTER_LIST extended permit tcp any host 172.20.1.50 eq http
vpn-asa1(config)# group-policy EMPLOYEE_GROUP attributes
vpn-asa1(config-group-policy)# vpn-filter value FILTER_LIST
b) vpn-asa1(config)# access-list FILTER_LIST extended permit tcp any host 172.20.1.50 eq http
vpn-asa1(config)# group-policy EMPLOYEE_GROUP general-attributes
vpn-asa1(config-group-policy)# traffic-filter value FILTER_LIST
c) vpn-asa1(config)# access-list FILTER_LIST extended permit tcp any host 172.20.1.50 eq http
vpn-asa1(config)# group-policy EMPLOYEE_GROUP attributes
vpn-asa1(config-group-policy)# traffic-filter value FILTER_LIST
d) vpn-asa1(config)# access-list FILTER_LIST extended permit tcp host 172.20.1.50 eq http any
vpn-asa1(config)# group-policy EMPLOYEE_GROUP attributes
vpn-asa1(config-group-policy)# vpn-filter value FILTER_LIST
 
06. When implementing FlexVPN, which three authentication methods are supported?
(Choose three.)
a) EAP
b) Pre-shared Key
c) Kerberos
d) RSA Signatures
 
07. You are the administrator of an SSL VPN and are asked to configure remote desktop connectivity for offsite users. Which two bookmark options would provide this type of access to your remote users?
(Choose two.)
a) Telnet
b) SSH plug-in
c) VNC
d) RDP
e) Citrix
 
08. During the NHRP registration process in a DMVPN network, which two pieces of information does the spoke router provide to the hub router?
(Choose two.)
a) Internet (NBMA) address
b) Loopback IP address
c) Broadcast IP address
d) Tunnel IP address
e) Multicast IP address
 
09. On Cisco IOS, which command configures a tunnel interface to use IPsec rather than GRE encapsulation?
a) ip mode ipsec
b) tunnel mode ipsec ipv4
c) tunnel mode ipsec ip
d) tunnel mode ipsec
 
10. Without using the tunnel-group list, which two parameters help map a VPN session to a tunnel-group?
(Choose two.)
a) group-alias
b) group-url
c) certificate map
d) static mapping

Solutions:

Question: 01

Answer: d

Question: 02

Answer: c

Question: 03

Answer: c, d

Question: 04

Answer: d

Question: 05

Answer: a

Question: 06

Answer: a, b, d

Question: 07

Answer: c, d

Question: 08

Answer: a, d

Question: 09

Answer: b

Question: 10

Answer: b, c

Note: If you find any error in these Cisco Implementing Secure Solutions with Virtual Private Networks (SVPN) sample questions, you can update us by write an email on feedback@nwexam.com.

Rating: 4.9 / 5 (82 votes)