nerdexam
HP

HPE7-A02 · Question #63

Refer to Exhibit. All of the switches in the exhibit are AOS-CX switches. What is the preferred configuration on Switch-2 for preventing rogue OSPF routers in this network?

The correct answer is B. Configure OSPF authentication on Lag 1 in MD5 mode. Why MD5 Authentication on Lag 1 is Preferred: Lag 1 is the primary link between Switch-2 and Switch-1, both of which are Layer 3 switches OSPF. By enabling MD5 authentication, OSPF routers exchange authenticated packets, preventing unauthorized or rogue OSPF routers from…

Implementing Advanced Security Features

Question

Refer to Exhibit. All of the switches in the exhibit are AOS-CX switches. What is the preferred configuration on Switch-2 for preventing rogue OSPF routers in this network?

Options

  • AConfigure OSPF authentication on VLANs 10-19 in password mode.
  • BConfigure OSPF authentication on Lag 1 in MD5 mode.
  • CDisable OSPF entirely on VLANs 10-19.
  • DConfigure passive-interface as the OSPF default and disable OSPF passive on Lag 1.

How the community answered

(20 responses)
  • A
    15% (3)
  • B
    55% (11)
  • C
    5% (1)
  • D
    25% (5)

Explanation

Why MD5 Authentication on Lag 1 is Preferred: Lag 1 is the primary link between Switch-2 and Switch-1, both of which are Layer 3 switches OSPF. By enabling MD5 authentication, OSPF routers exchange authenticated packets, preventing unauthorized or rogue OSPF routers from forming adjacencies or injecting routes. MD5 is a secure authentication method and ensures the integrity and authenticity of OSPF

Topics

#OSPF authentication#rogue router prevention#AOS-CX#MD5 mode

Community Discussion

No community discussion yet for this question.

Full HPE7-A02 Practice