🔥 3-day streak
Cisco Designing and Implementing Secure Cloud Connectivity ENCC (300-440)23 / 128
Question 23 of 128

You are configuring a route-based IPsec VPN from an on-premises Cisco IOS XE router to a native Azure VPN Gateway (VpnGw2, Generation2). Azure will terminate the tunnel using IKEv2. To ensure Phase 2 (IPsec SA / child SA) negotiation succeeds with Azure's default supported parameters while maximizing hardware-accelerated throughput, which IPsec transform set should you configure on the IOS XE router?

Reviewed for accuracy · Report an issueNext question