300-415 Question 211
Select 3An enterprise is deploying Cisco SD-WAN and needs to ensure secure communication between branch sites and the data center. They also require advanced security features such as URL filtering and intrusion prevention to protect against external threats. Which Cisco SD-WAN security features should they implement to meet these requirements?
- A
IPSec encryption for secure data transfer
- B
Application-Aware Routing for traffic prioritization
- C
URL filtering to block malicious websites
- D
Intrusion prevention system (IPS) for threat detection
- E
Quality of Service (QoS) for bandwidth management
Show answer and explanation
Correct answers: A, C, D
Explanation
To meet the enterprise's requirements for secure communication and protection against threats, Cisco SD-WAN security features such as IPSec encryption, URL filtering, and the Intrusion Prevention System (IPS) should be implemented. These features address data encryption, external threat protection, and malicious content blocking, which are critical for securing branch-to-data-center communication.
- A. Correct.
IPSec encryption is a core Cisco SD-WAN security feature that ensures secure communication between sites by encrypting data in transit.
- B. Incorrect.
Application-Aware Routing is a traffic management feature that prioritizes application traffic but is not directly related to security.
- C. Correct.
URL filtering is a Cisco SD-WAN security feature that blocks access to malicious or unauthorized websites, enhancing network security.
- D. Correct.
The Intrusion Prevention System (IPS) detects and prevents threats, making it an essential Cisco SD-WAN security feature.
- E. Incorrect.
Quality of Service (QoS) is used for bandwidth management and ensuring application performance but does not contribute to security.