nerdexam
Juniper

JN0-633 · Question #176

JN0-633 Question #176: Real Exam Question with Answer & Explanation

Sign in or unlock JN0-633 to reveal the answer and full explanation for question #176. The question stem and answer options stay visible for context.

Question

Click the Exhibit button. user@host> show security ike security-associations Index State Initiator cookie Responder cookie ModeRemote Address 3271043 UP7f42284089404673 95fd8408940438d8 Main 172.31.50.2 user@host> show security ipsec security-associations Total active tunnels: 0 user@host> show log phase2 Feb 2 14:21:18 host kmd[1088]: IKE negotiation failed with error: TS unacceptable. IKE Version: 1, VPN: vpn-1 Gateway: gate-1, Local: 172.31.50.1/500, Remote: 172.31.50.2/500, Local IKE-ID: 172.31.50.1, Remote IKE-ID: 172.31.50.2, VR-ID: 0 Feb 2 14:21:18 host kmd[1088]: KMD_VPN_TS_MISMATCH: Traffic-selector mismatch, vpn name: vpn-1, Peer Proposed traffic-selector local-ip: ipv4(2.2.2.2), Peer Proposed traffic-selector remote-ip: ipv4 (1.1.1.1) Feb 2 14:21:54 host kmd[1088]: IKE negotiation failed with error: No proposal chosen. IKE Version: 1, VPN: vpn-1 Gateway: gate-1, Local: 172.31.50.1/500, Remote: 172.31.50.2/500, Local IKE-ID: 172.31.50.1, Remote IKE-ID: 172.31.50.2, VR-ID: 0 Feb 2 14:22:19 host kmd[1088]: KMD_VPN_TS_MISMATCH: Traffic-selector mismatch, vpn name: vpn-1, Peer Proposed traffic-selector local-ip: ipv4 (2.2. 2.2), Peer Proposed traffic-selector remote-ip: ipv4(1.1.1.1) You have recently configured an IPsec VPN between an SRX Series device and another non-Junos security device. The phase one tunnel is up but the phase two tunnel is not present. Referring to the exhibit, what is the cause of this problem?

Options

  • Apreshared key mismatch
  • Bmode mismatch
  • Cproposal mismatch
  • Dproxy-ID mismatch

Unlock JN0-633 to see the answer

You've previewed enough free JN0-633 questions. Unlock JN0-633 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full JN0-633 Practice