nerdexam
Juniper

JN0-632 · Question #63

You have configured your SRX Series device with two route-based VPNs for the same destination network Remote SRX Series device A's route has a preference of 5 and remote SRX Series device B has a…

The correct answer is B. Configure the vpn-monitor feature. See the full explanation below for the reasoning.

Question

You have configured your SRX Series device with two route-based VPNs for the same destination network Remote SRX Series device A's route has a preference of 5 and remote SRX Series device B has a preference of 10. Users complain they cannot reach the networks through the VPN tunnel. You verify the VPN's status and discover that the IKE Phase 1 and Phase 2 security associations are active, but the remote networks are not reachable. Which SRX VPN feature would you use to cause the route-based VPN with preference 10 to be used?

Options

  • AConfigure the dead peer detection feature.
  • BConfigure the vpn-monitor feature.
  • CConfigure the establish-tunnels-immediately option.
  • DConfigure the IPSec security association lifetime to a lower value.

How the community answered

(45 responses)
  • A
    7% (3)
  • B
    71% (32)
  • C
    18% (8)
  • D
    4% (2)

Community Discussion

No community discussion yet for this question.

Full JN0-632 Practice