Juniper
JN0-632 · Question #63
You have configured your SRX Series device with two route-based VPNs for the same destination network Remote SRX Series device A's route has a preference of 5 and remote SRX Series device B has a…
The correct answer is B. Configure the vpn-monitor feature. See the full explanation below for the reasoning.
Question
You have configured your SRX Series device with two route-based VPNs for the same destination network Remote SRX Series device A's route has a preference of 5 and remote SRX Series device B has a preference of 10. Users complain they cannot reach the networks through the VPN tunnel. You verify the VPN's status and discover that the IKE Phase 1 and Phase 2 security associations are active, but the remote networks are not reachable. Which SRX VPN feature would you use to cause the route-based VPN with preference 10 to be used?
Options
- AConfigure the dead peer detection feature.
- BConfigure the vpn-monitor feature.
- CConfigure the establish-tunnels-immediately option.
- DConfigure the IPSec security association lifetime to a lower value.
How the community answered
(45 responses)- A7% (3)
- B71% (32)
- C18% (8)
- D4% (2)
Community Discussion
No community discussion yet for this question.