🔥 3-day streak
Cisco Designing and Implementing Secure Cloud Connectivity ENCC (300-440)54 / 128
Question 54 of 128
A network engineer configures a route-based IPsec VPN using an IKEv2 VTI (Virtual Tunnel Interface) between an on-premises Cisco IOS XE router and an Azure VPN Gateway. The tunnel establishes successfully, but during a simulated failure test the Azure gateway reboots and the on-premises router keeps the SA active for several minutes, blackholing traffic until the tunnel is manually cleared. Which configuration change on the IOS XE router will allow it to detect the dead peer and tear down the stale SA automatically?
Reviewed for accuracy · Report an issueNext question