nerdexam
Fortinet

NSE7_EFW · Question #90

View the exhibit, which contains the partial output of an IKE real time debug, and then answer the question below. The administrator does not have access to the remote gateway. Based on the debug…

The correct answer is C. Change phase 1 encryption to AES128 and authentication to SHA512. See the full explanation below for the reasoning.

Question

View the exhibit, which contains the partial output of an IKE real time debug, and then answer the question below. The administrator does not have access to the remote gateway. Based on the debug output, what configuration changes can the administrator make to the local gateway to resolve the phase 1 negotiation error?

Exhibit

NSE7_EFW question #90 exhibit

Options

  • AChange phase 1 encryption to AESCBC and authentication to SHA128.
  • BChange phase 1 encryption to 3DES and authentication to CBC.
  • CChange phase 1 encryption to AES128 and authentication to SHA512.
  • DChange phase 1 encryption to 3DES and authentication to SHA256.

How the community answered

(65 responses)
  • A
    5% (3)
  • B
    11% (7)
  • C
    82% (53)
  • D
    3% (2)

Community Discussion

No community discussion yet for this question.

Full NSE7_EFW Practice