Refer to the exhibit.
aaa new-model
aaa authentication network FLEXVPN local
!
crypto ikev2 authorization policy SPOKES
pool FlexPOOL
route set interface
route accept any distance 255
!
crypto ikev2 keyring SPOKES
peer ALLSPOKES
identity fqdn domain exanple.com
pre-shared-key Ciscol23
!
crypto ikev2 profile SPOKES
match identity remote fqdn domain example.com
identity local fqdn R002.example.com
authentication remote pre-share
authentication local pre-share
keyring local SPOKES
aaa authorization group psk list FLEXVPN SPOKES
virtual-template 10
set ikev2-profile SPOKES
An IPsec peer is exchanging routes using IKEv2, but the routes are not installed in the RIB.
Which configuration error is causing the failure?
A.
IKEv2 routing requires certificate authentication, not pre-shared keys
B.
An invalid administrative distance value was configured.
C.
The match identity command must refer to an access list of routes.
D.
The IKEv2 authorization policy is not referenced in the IKEv2 profile.