ExamGecko
Question list
Search
Search

Question 502 - 156-315.81 discussion

Report
Export

You had setup the VPN Community VPN-Stores'with 3 gateways. There are some issues with one remote gateway(1.1.1.1) and an your local gateway. What will be the best log filter to see only the IKE Phase 2 agreed networks for both gateways

A.
action:'Key Install' AND 1.1.1.1 AND Main Mode
Answers
A.
action:'Key Install' AND 1.1.1.1 AND Main Mode
B.
action:'Key Install- AND 1.1.1.1 ANDQuick Mode
Answers
B.
action:'Key Install- AND 1.1.1.1 ANDQuick Mode
C.
Blade:'VPN' AND VPN-Stores AND Main Mode
Answers
C.
Blade:'VPN' AND VPN-Stores AND Main Mode
D.
Blade:'VPN' AND VPN-Stores AND Quick Mode
Answers
D.
Blade:'VPN' AND VPN-Stores AND Quick Mode
Suggested answer: B

Explanation:

The best log filter to see only the IKE Phase 2 agreed networks for both gateways is B.action:''Key Install'' AND 1.1.1.1 AND Quick Mode1.This filter will show you the logs that indicate the successful establishment of IKE Phase 2, which is also known as Quick Mode2.In this phase, the Security Gateway and the remote gateway negotiate the IPSec Security Associations (SAs) and exchange the encryption keys for the VPN tunnel2.The action:''Key Install'' field shows that the SAs were installed successfully3.The 1.1.1.1 field shows that the logs are related to the remote gateway with that IP address3.The Quick Mode field shows that the logs are related to IKE Phase 2, as opposed to Main Mode, which is IKE Phase 13.To use this filter, you need to go to SmartConsole, open SmartLog, and enter the filter expression in the search box3.

asked 16/09/2024
Aung Nyi Nyi Win
30 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first