Juniper
JN0-632 · Question #150
You want to implement a VPN on your SRX device that will use certificates to authenticate with the peer gateway. You plan to allow certificates from any certificate authority. Which two…
The correct answer is C. Set security ike proposal rsa-prop1 authentication-method rsa-signatures. D. Set security ike policy ike-poll certificate trusted-ca use-all. See the full explanation below for the reasoning.
Question
You want to implement a VPN on your SRX device that will use certificates to authenticate with the peer gateway. You plan to allow certificates from any certificate authority. Which two configuration commands are required? (Choose two.)
Options
- ASet security ipsec proposal rsa-prop1 authentication-method rsa-signatures.
- BSet security ike policy ike-poll certificate local-certificate my-cert.
- CSet security ike proposal rsa-prop1 authentication-method rsa-signatures.
- DSet security ike policy ike-poll certificate trusted-ca use-all.
How the community answered
(17 responses)- A12% (2)
- B6% (1)
- C82% (14)
Community Discussion
No community discussion yet for this question.