Fortinet
NSE7_SDW-6.4 · Question #38
Which two statements describe how IPsec phase 1 aggressive mode is different from main mode when performing IKE negotiation? (Choose two)
The correct answer is C. Three packets are exchanged between an initiator and a responder instead of six packets. D. The peer ID is included in the first packet from the initiator, along with suggested security policies. See the full explanation below for the reasoning.
Question
Which two statements describe how IPsec phase 1 aggressive mode is different from main mode when performing IKE negotiation? (Choose two)
Options
- AXAuth is enabled as an additional level of authentication, which requires a username and password.
- BThe use of XAuth protects against brute force password attacks, especially for weak passwords.
- CThree packets are exchanged between an initiator and a responder instead of six packets.
- DThe peer ID is included in the first packet from the initiator, along with suggested security policies.
How the community answered
(31 responses)- A13% (4)
- B6% (2)
- C81% (25)
Community Discussion
No community discussion yet for this question.