Multiple Choice
Your manager requires you to setup a VPN to a new business partner site. The administrator from the partner site gives you his VPN settings and you notice that he setup AES 128 for IKE phase 1 and AES 256 for IKE phase 2. Why is this a problematic setup?
A) The two algorithms do not have the same key length and so don't work together. You will get the error … No proposal chosen… The two algorithms do not have the same key length and so don't work together. You will get the error … No proposal chosen…
B) All is fine as the longest key length has been chosen for encrypting the data and a shorter key length for higher performance for setting up the tunnel.
C) Only 128 bit keys are used for phase 1 keys which are protecting phase 2, so the longer key length in phase 2 only costs performance and does not add security due to a shorter key in phase 1.
D) All is fine and can be used as is.
Correct Answer:

Verified
Correct Answer:
Verified
Q1: The position of an implied rule is
Q2: Which utility shows the security gateway general
Q3: Which of the following describes how Threat
Q5: You have enabled "Extended Log" as a
Q6: Ken wants to obtain a configuration lock
Q7: There are two R77.30 Security Gateways in
Q8: Which of the following is NOT a
Q9: What data MUST be supplied to the
Q10: Which of the following is NOT an
Q11: How would you determine the software version