🔥 3-day streak
Cisco Designing and Implementing Secure Cloud Connectivity ENCC (300-440)122 / 128
Question 122 of 128
A network engineer is bringing up a Cisco Catalyst SD-WAN secure internet gateway (SIG) tunnel to Zscaler using IPsec. The tunnel repeatedly fails during IKEv2 authentication. The Zscaler location was provisioned with a pre-shared key and expects the tunnel to be identified by an email-style location ID (e.g., branch1@company.com) rather than by the WAN edge's public IP address, which is dynamically assigned behind a NAT device. Which configuration change on the WAN edge router will allow the IKEv2 session to authenticate successfully?
Reviewed for accuracy · Report an issueNext question