Juniper
JN0-632 · Question #116
You must configure a site-to-site VPN connection between your company and a business partner. The security policy of your organization states that the source of incoming traffic must be…
The correct answer is C. Use a third-party certificate authority and exchange public keys with the business partner. Juniper JN0-632 Exam
VPN Implementations (IPsec, L2TP)
Question
You must configure a site-to-site VPN connection between your company and a business partner. The security policy of your organization states that the source of incoming traffic must be authenticated by a neutral party to prevent spoofing of an unauthorized source gateway. What accomplishes this goal?
Options
- AUse a manual key exchange to encrypt/decrypt traffic.
- BGenerate internal Diffie-Hellman public/private key pairs on each VPN device and exchange public
- CUse a third-party certificate authority and exchange public keys with the business partner.
- DUse a private X.509 PKI certificate and verify it against a third-party certificate revocation list (CRL).
How the community answered
(45 responses)- A7% (3)
- B13% (6)
- C78% (35)
- D2% (1)
Explanation
Juniper JN0-632 Exam
Topics
#third-party CA#PKI authentication#X.509 certificates#anti-spoofing
Community Discussion
No community discussion yet for this question.