Marcos Avila
Quiz by , created more than 1 year ago

NSE4 6.0 NSE4 6.0 Quiz on Dialup IPsec VPN, created by Marcos Avila on 13/09/2018.

14
1
0
Marcos Avila
Created by Marcos Avila about 6 years ago
Close

Dialup IPsec VPN

Question 1 of 17

1

Protocol RFC 2409 (__V1) RFC 4305 (__V2)
NAT IP protocol 17: UDP port 500 (UDP 4500 for rekey, quick mode. mode-cfg)
No NAT IP protocol 17: UDP port 500

Select one of the following:

  • IKE

  • ESP

Explanation

Question 2 of 17

1

Protocol RFC 4303
NAT IP protocol 17: UDP port 4500
No NAT IP protocol 50

Select one of the following:

  • IKE

  • ESP

Explanation

Question 3 of 17

1

IKE

Select one of the following:

  • Internet Key Exchange

  • Internet Key Extend

  • Internet Key Expert

Explanation

Question 4 of 17

1

AH

Select one of the following:

  • Authentication Header

  • Authentication Helpers

Explanation

Question 5 of 17

1

ESP

Select one of the following:

  • Encapsulation Security Payload

  • Encapsulation Security Packet

  • Exchange System Payload

Explanation

Question 6 of 17

1

is used to authenticate peers, exchange keys, and negotiate the encryption and checksums that will be used; essentially, it is the control channel.

Select one of the following:

  • IKE

  • ESP

  • AH

Explanation

Question 7 of 17

1

contains the authentieetion header—the checksums that verify the integrity of the data.

Select one of the following:

  • AH

  • ESP

  • IKE

Explanation

Question 8 of 17

1

is the encapsulated security payload—the encrypted payload, essentially, the data channel.

Select one of the following:

  • ESP

  • IKE

  • AH

Explanation

Question 9 of 17

1

Authentication Header (AH) does not offer encryption. So AH is not used by Fortigate.

Select one of the following:

  • True
  • False

Explanation

Question 10 of 17

1

IPsec provides services at the:

Select one of the following:

  • Network layer

  • Transport layer

  • Session layer

  • Data link layer

Explanation

Question 11 of 17

1

IPsec can operate in two modes:

Select one of the following:

  • Transport mode
    Tunnel mode

  • Tunnel mode
    Web mode

Explanation

Question 12 of 17

1

directly encapsulates and protects the fourth layer (transport) and above. The original IP header is not protected and no additional lP header is added.

Select one of the following:

  • Transport mode

  • Tunnel mode

Explanation

Question 13 of 17

1

is a true tunnel. The whole lP packet is encapsulated and a new IP header is added at the beginning. After the lPsec packet reaches the remote LAN, and is unwrapped, the original packet can continue on its journey.

Select one of the following:

  • Tunnel mode

  • Transport mode

Explanation

Question 14 of 17

1

SA

Select one of the following:

  • Security Association

  • System Association

  • Security Access

Explanation

Question 15 of 17

1

IKE no uses phases

Select one of the following:

  • True
  • False

Explanation

Question 16 of 17

1

In which encapsulation mode is the original IP header protected?

Select one of the following:

  • A. Tunnel mode

  • B. Transport mode

Explanation

Question 17 of 17

1

Which encapsulation mode is used for end—to-end (or client-to-client) VPNS?

Select one of the following:

  • Tunnel mode

  • Transport mode

Explanation