Fortinet
NSE7_SDW-6.4 · Question #3
Which two statements describe how IPsec phase 1 main mode id different from aggressive mode when performing IKE negotiation? (Choose two.)
The correct answer is A. A peer ID is included in the first packet from the initiator, along with suggested security policies. C. A total of six packets are exchanged between an initiator and a responder instead of three packets. See the full explanation below for the reasoning.
Question
Which two statements describe how IPsec phase 1 main mode id different from aggressive mode when performing IKE negotiation? (Choose two.)
Options
- AA peer ID is included in the first packet from the initiator, along with suggested security policies.
- BXAuth is enables as an additional level of authentication, which requires a username and password.
- CA total of six packets are exchanged between an initiator and a responder instead of three packets.
- DThe use of Diffie Hellman keys is limited by the responder and needs initiator acceptance.
How the community answered
(42 responses)- A81% (34)
- B12% (5)
- D7% (3)
Community Discussion
No community discussion yet for this question.