nerdexam
Juniper

JN0-632 · Question #116

You must configure a site-to-site VPN connection between your company and a business partner. The security policy of your organization states that the source of incoming traffic must be…

The correct answer is C. Use a third-party certificate authority and exchange public keys with the business partner. Juniper JN0-632 Exam

VPN Implementations (IPsec, L2TP)

Question

You must configure a site-to-site VPN connection between your company and a business partner. The security policy of your organization states that the source of incoming traffic must be authenticated by a neutral party to prevent spoofing of an unauthorized source gateway. What accomplishes this goal?

Options

  • AUse a manual key exchange to encrypt/decrypt traffic.
  • BGenerate internal Diffie-Hellman public/private key pairs on each VPN device and exchange public
  • CUse a third-party certificate authority and exchange public keys with the business partner.
  • DUse a private X.509 PKI certificate and verify it against a third-party certificate revocation list (CRL).

How the community answered

(45 responses)
  • A
    7% (3)
  • B
    13% (6)
  • C
    78% (35)
  • D
    2% (1)

Explanation

Juniper JN0-632 Exam

Topics

#third-party CA#PKI authentication#X.509 certificates#anti-spoofing

Community Discussion

No community discussion yet for this question.

Full JN0-632 Practice