Question 386 of 530 from exam 400-251: CCIE Security written exam

Question 386 of 530 from exam 400-251: CCIE Security written exam

Question

Refer to the exhibit.

Server:

aaa suthentication login authen local

username cisco password 0 cisco

czypto isakmp policy 3
authentication pre-share
group 2

crypto isakmp client configuration group ezvpngroup|
key cisco
Pool pool-2

client

crypto ipsec client ezvpn esvpnelient
group ezvpngroup key cisco

rode client

peer 10.1.1.2

virtual-inertace 1

xauth userid mode interactive
interface GigabitEtherneto/o

ip address 172.16.10.1 255.255-255.0

fel 101

crypto isakmp profile ezvpnprot
match identity group ezvpngroup
Client authentication ise auchen
isakep authorization list author

virtual-templace 1

crypto ipsec transform-set TS e=p-adee esp-sna-hmac|

czypto ipsec profile spsecprot
fer transform-set TS
interface Loopback
Ap address 192.168,10.1 255.255.255.0

crypto ipsec client eevpn ezvpnelient ineide||incerface cigabicttherneto/t

interface GigabitEtherneto/1
ip address 10.1.1.1 255.255.255-0

crypto ipsec client exvpn ezvpnelient

interface Virtual-Template1 type tunnel
ip unnumbered GigabitEthernet0/1
tunnel mode ipsec ipva

ip address 10.1.1.2 255.255.255.0

interface Vircual-Template! type tunnel
ip unnunbered Gigabicetherneto/2
tunnel mode ipsec pv4

tunnel protection ipsec profile ipsecprot

4p Locad pool pool-1 172.20.1.10 172.20.1.20

access-tise 101 permit ip Rose 192-268.10.1 an

Ea Ge

Why does the EasyVPN session fail to establish between the client and server?

Answers

Explanations

A. B. C. D. E.

A.