nerdexam
Juniper

JN0-533 · Question #100

You have created a site-to-site IPsec VPN between two devices. You want to keep the tunnel up at all times, even when no user traffic is using it. Which two configuration additions will accomplish…

The correct answer is B. set vpn "RemoteVPN" monitor source-interface ethernet0/1 destination-ip rekey D. set vpn "RemoteVPN" monitor source-interface ethernet0/1 destination-ip rekey optimized. See the full explanation below for the reasoning.

Question

You have created a site-to-site IPsec VPN between two devices. You want to keep the tunnel up at all times, even when no user traffic is using it. Which two configuration additions will accomplish this goal? (Choose two.)

Options

  • Aset vpn "RemoteVPN" monitor source-interface ethernet0/1 destination-ip
  • Bset vpn "RemoteVPN" monitor source-interface ethernet0/1 destination-ip rekey
  • Cset vpn "RemoteVPN" monitor source-interface ethernet0/1 destination-ip keepalive
  • Dset vpn "RemoteVPN" monitor source-interface ethernet0/1 destination-ip rekey optimized

How the community answered

(37 responses)
  • A
    16% (6)
  • B
    70% (26)
  • C
    14% (5)

Community Discussion

No community discussion yet for this question.

Full JN0-533 Practice