H12-821_V1.0 · Question #592
Which of the following statements about BGP security are correct? (Multiple choice)
The correct answer is A. Keychain authentication can be used between BGP neighbors to reduce the possibility of being attacked, and Keychain has a set of passwords, which can be dynamically exchanged between BGP neighbors B. When configuring the MD5 authentication password, if the simple option is used, the password will be saved in the configuration file in plain text, which poses a security risk C. You can use the display bgp peer verbose command to view the authentication details of BGP peers D. To prevent attackers from simulating real BGP protocol packets to attack the device, you can configure the GTSM function to detect the TTL value in the IP packet header. See the full explanation below for the reasoning.
Question
Options
- AKeychain authentication can be used between BGP neighbors to reduce the possibility of being attacked, and Keychain has a set of passwords, which can be dynamically exchanged between BGP neighbors
- BWhen configuring the MD5 authentication password, if the simple option is used, the password will be saved in the configuration file in plain text, which poses a security risk
- CYou can use the display bgp peer verbose command to view the authentication details of BGP peers
- DTo prevent attackers from simulating real BGP protocol packets to attack the device, you can configure the GTSM function to detect the TTL value in the IP packet header
How the community answered
(38 responses)- A100% (38)
Community Discussion
No community discussion yet for this question.