nerdexam
Check_Point

156-215.76 · Question #309

Your manager requires you to setup a VPN to a new business partner site. The administrator from the partner site gives you his VPN settings and you notice that he setup AES 128 for IKE phase 1 and…

The correct answer is D. Only 128 bit keys are used for phase 1 keys which are protecting phase 2, so the longer key length in. See the full explanation below for the reasoning.

Question

Your manager requires you to setup a VPN to a new business partner site. The administrator from the partner site gives you his VPN settings and you notice that he setup AES 128 for IKE phase 1 and AES 256 for IKE phase (2) Why is this a problematic setup?

Options

  • AAll is fine as the longest key length has been chosen for encrypting the data and a shorter key length
  • BAll is fine and can be used as is.
  • CThe two algorithms do not have the same key length and so don't work together. You will get the error ....
  • DOnly 128 bit keys are used for phase 1 keys which are protecting phase 2, so the longer key length in

How the community answered

(27 responses)
  • A
    4% (1)
  • B
    7% (2)
  • C
    15% (4)
  • D
    74% (20)

Community Discussion

No community discussion yet for this question.

Full 156-215.76 Practice