🔥 3-day streak
Cisco Designing and Implementing Secure Cloud Connectivity ENCC (300-440)59 / 128
Question 59 of 128

An engineer built a route-based IPsec VTI tunnel from a Cisco IOS XE router to an Azure VPN Gateway. The tunnel is up and eBGP with the Azure gateway is established. The on-premises router learns Azure VNet prefixes via BGP, but Azure workloads cannot reach the on-premises 10.20.0.0/16 subnet. On IOS XE, 'show ip bgp neighbors <azure-ip> advertised-routes' shows no prefix for 10.20.0.0/16, even though the route is present in the local RIB and BGP table. What is the MOST likely cause?

Reviewed for accuracy · Report an issueNext question