nerdexam
Fortinet

NSE7_SDW-6.4 · Question #3

Which two statements describe how IPsec phase 1 main mode id different from aggressive mode when performing IKE negotiation? (Choose two.)

The correct answer is A. A peer ID is included in the first packet from the initiator, along with suggested security policies. C. A total of six packets are exchanged between an initiator and a responder instead of three packets. See the full explanation below for the reasoning.

Question

Which two statements describe how IPsec phase 1 main mode id different from aggressive mode when performing IKE negotiation? (Choose two.)

Options

  • AA peer ID is included in the first packet from the initiator, along with suggested security policies.
  • BXAuth is enables as an additional level of authentication, which requires a username and password.
  • CA total of six packets are exchanged between an initiator and a responder instead of three packets.
  • DThe use of Diffie Hellman keys is limited by the responder and needs initiator acceptance.

How the community answered

(42 responses)
  • A
    81% (34)
  • B
    12% (5)
  • D
    7% (3)

Community Discussion

No community discussion yet for this question.

Full NSE7_SDW-6.4 Practice