Palo_Alto_Networks
PCNSE7 · Question #177
PCNSE7 Question #177: Real Exam Question with Answer & Explanation
Sign in or unlock PCNSE7 to reveal the answer and full explanation for question #177. The question stem and answer options stay visible for context.
Question
After Migrating from an ASA firewall to a Palo Alto Networks Firewall, the VPN connection between a remote network and the Palo Alto Networks Firewall is not establishing correctly. The following entry is appearing in the logs: Pfs group mismatched: my:0 peer:2 Which setting should be changed on the Palo Alto Networks Firewall to resolve this error message?
Options
- AUpdate- the IPSec Crypto profile for the Vendor IPSec Tunnel from group2 to no-pfs.
- BUpdate the IKE Crypto profile for the Vendor IKE gateway from no pfs to group2.
- CUpdate the IKE Crypto profile for the Vendor IKE gateway from group2 to no pfs
- DUpdate the IPSec Crypto profile for the Vendor IPSec Tunnel from no-pfs to group2.
Unlock PCNSE7 to see the answer
You've previewed enough free PCNSE7 questions. Unlock PCNSE7 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.