nerdexam
Juniper

JN0-333 · Question #62

You recently configured an IPsec VPN between two SRX Series devices. You notice that the Phase 1 negotiation succeeds and the Phase 2 negotiation fails. Which two configuration parameters should you…

The correct answer is A. Verify that the IKE gateway proposals on the initiator and responder are the same. B. Verify that the VPN tunnel configuration references the correct IKE gateway. See the full explanation below for the reasoning.

Question

You recently configured an IPsec VPN between two SRX Series devices. You notice that the Phase 1 negotiation succeeds and the Phase 2 negotiation fails. Which two configuration parameters should you verify are correct? (Choose two.)

Options

  • AVerify that the IKE gateway proposals on the initiator and responder are the same.
  • BVerify that the VPN tunnel configuration references the correct IKE gateway.
  • CVerify that the IKE initiator is configured for main mode.
  • DVerify that the IPsec policy references the correct IKE proposals.

How the community answered

(39 responses)
  • A
    72% (28)
  • C
    18% (7)
  • D
    10% (4)

Community Discussion

No community discussion yet for this question.

Full JN0-333 Practice