nerdexam
Juniper

JN0-696 · Question #48

You are asked to troubleshoot a number of dynamic VPN connections on an SRX Series device. Which three statements are correct? (Choose three.)

The correct answer is C. Dynamic VPN tunnels must be configured with extended authentication (XAUTH). D. The SRX Series device requires a license for each remote client. E. Only policy-based VPNs are supported. C: Dynamic VPN tunnels must be configured with extended authentication (XAuth). D: When configuring a shared or group IKE ID gateway, you can configure the maximum number of connections to be greater than the number of installed dynamic VPN licenses. However, if a new…

Troubleshooting IPsec VPNs

Question

You are asked to troubleshoot a number of dynamic VPN connections on an SRX Series device. Which three statements are correct? (Choose three.)

Options

  • AThe configuration supports DH groups 1, 3, and 5.
  • BOnly RSAs are supported for IKE phase 1 authentication.
  • CDynamic VPN tunnels must be configured with extended authentication (XAUTH).
  • DThe SRX Series device requires a license for each remote client.
  • EOnly policy-based VPNs are supported.

How the community answered

(24 responses)
  • A
    17% (4)
  • B
    8% (2)
  • C
    75% (18)

Explanation

C: Dynamic VPN tunnels must be configured with extended authentication (XAuth). D: When configuring a shared or group IKE ID gateway, you can configure the maximum number of connections to be greater than the number of installed dynamic VPN licenses. However, if a new connection exceeds the number of licensed connections, the connection will be E: Only policy-based VPNs are supported. Route-based VPNs are not supported with dynamic VPN tunnels. A: The dynamic VPN client supports DH groups 1,2, and 5. B: Only preshared keys are supported for Phase 1 authentication with dynamic VPN tunnels. tunnelunderstanding.html

Topics

#dynamic VPN#XAUTH#policy-based VPN#VPN license

Community Discussion

No community discussion yet for this question.

Full JN0-696 Practice