nerdexam
Cisco

350-701 · Question #536

Drag and Drop Question Drag and drop the cryptographic algorithms for IPsec from the left onto the cryptographic processes on the right. Answer:

The correct answer is esp-md5-hmac; esp-sha-hmac; esp-3des; esp-aes-256. In IPsec, cryptographic processes are divided into two categories: integrity/authentication and encryption. ESP-md5-hmac and esp-sha-hmac are hashing algorithms used for data integrity and authentication (HMAC = Hash-based Message Authentication Code), while esp-3des and…

Submitted by yuki_2020· Mar 30, 2026Infrastructure Security - Understanding IPsec VPN cryptographic components including encryption (confidentiality) algorithms such as 3DES and AES versus integrity/authentication algorithms such as MD5-HMAC and SHA-HMAC, commonly tested in CCNA, CompTIA Security+, and related certifications.

Question

Drag and Drop Question Drag and drop the cryptographic algorithms for IPsec from the left onto the cryptographic processes on the right. Answer:

Exhibit

350-701 question #536 exhibit

Answer Area

Drag items

esp-3desesp-aes-256esp-md5-hmacesp-sha-hmac

Correct arrangement

  • esp-md5-hmac
  • esp-sha-hmac
  • esp-3des
  • esp-aes-256

Explanation

In IPsec, cryptographic processes are divided into two categories: integrity/authentication and encryption. ESP-md5-hmac and esp-sha-hmac are hashing algorithms used for data integrity and authentication (HMAC = Hash-based Message Authentication Code), while esp-3des and esp-aes-256 are symmetric encryption algorithms used for confidentiality. The correct arrangement places the HMAC-based algorithms under integrity/authentication processes and the cipher-based algorithms under encryption processes.

Topics

#IPsec#Cryptographic Algorithms#VPN#Network Security

Community Discussion

No community discussion yet for this question.

Full 350-701 Practice