Check_Point
156-215.71 · Question #317
Your manager requires you to setup a VPN to a new business partner site. The administrator from the partner site gives you his VPN settings and you notice that he setup AES 128 for IKE phase 1 and…
The correct answer is C. Only 128 bit keys are used for phase 1 keys which are protecting phase 2, so the longer key length in. See the full explanation below for the reasoning.
Question
Your manager requires you to setup a VPN to a new business partner site. The administrator from the partner site gives you his VPN settings and you notice that he setup AES 128 for IKE phase 1 and AES 256 for IKE phase 2. Why is this a problematic setup?
Options
- AAll is fine as the longest key length has been chosen for encrypting the data and a shorter key length
- BAll is fine and can be used as is.
- COnly 128 bit keys are used for phase 1 keys which are protecting phase 2, so the longer key length in
- DThe 2 algorithms do not have the same key length and so don't work together. You will get the error "
How the community answered
(17 responses)- A18% (3)
- C76% (13)
- D6% (1)
Community Discussion
No community discussion yet for this question.