Juniper
JN0-1331 · Question #65
Your company has 500 branch sites and the CIO is concerned about minimizing the potential impact of a VPN router being stolen from an enterprise branch site. You want the ability to quickly disable…
The correct answer is C. Use firewall filters to block traffic from the stolen VPN router. See the full explanation below for the reasoning.
Question
Your company has 500 branch sites and the CIO is concerned about minimizing the potential impact of a VPN router being stolen from an enterprise branch site. You want the ability to quickly disable a stolen VPN router while minimizing administrative overhead. Which solution accomplishes this task?
Options
- AImplement a certificate-based VPN using a public key infrastructure (PKI)
- BModify your IKE proposals to use Diffie-Hellman group 14 or higher
- CUse firewall filters to block traffic from the stolen VPN router
- DRotate VPN pre-shared keys every month
How the community answered
(45 responses)- A7% (3)
- B13% (6)
- C76% (34)
- D4% (2)
Community Discussion
No community discussion yet for this question.