Refer to the exhibit. An engineer must configure a LAN-to-LAN IPsec VPN between R1 and the remote router. Which IPsec Phase 1 configuration must the engineer use for the local router?
A.
crypto isakmp policy 5 authentication pre-share encryption 3des hash sha group 2 ! crypto isakmp key cisco123 address 200.1.1.3
B.
crypto isakmp policy 5 authentication pre-share encryption 3des hash md5 group 2 ! crypto isakmp key cisco123! address 199.1.1.1
C.
crypto isakmp policy 5 authentication pre-share encryption 3des hash md5 group 2 ! crypto isakmp key cisco123 address 199.1.1.1
D.
crypto isakmp policy 5 authentication pre-share encryption 3des hash md5 group 2 ! crypto isakmp key cisco123 address 200.1.1.3
A and D both are correct but remember to smoke before exam :P
vIOS(config-isakmp)#hash ?
md5 Message Digest 5
sha Secure Hash Standard
sha256 Secure Hash Standard 2 (256 bit)
sha384 Secure Hash Standard 2 (384 bit)
sha512 Secure Hash Standard 2 (512 bit)
A is correct answer
Explanation
In the “crypto isakmp key … address ” command, the address must be of the IP address of the other
end (which is 200.1.1.3 in this case) so Option A and Option B are correct. The difference between
these two options are in the hash SHA or MD5 method but both of them can be used although SHA is
better than MD5 so we choose Option A the best answer.
Note: Cisco no longer recommends using 3DES, MD5 and DH groups 1, 2 and 5.
Reference: https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_imgmt/configuration/xe-16-
5/sec-ipsec-management-xe-16-5-book/sec-ipsec-usability-enhance.html
Agree with others.
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ikevpn/configuration/xe-16-5/sec-ike-for-ipsec-vpns-xe-16-5-book/sec-key-exch-ipsec.html
Cisco no longer recommends using DES, 3DES, MD5 (including HMAC variant), and Diffie-Hellman (DH) groups 1, 2 and 5; instead, you should use AES, SHA-256 and DH Groups 14 or higher.
This section is not available anymore. Please use the main Exam Page.300-410 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
HarwinderSekhon
Highly Voted 1 year, 9 months agosayed_2908
Highly Voted 2 years, 3 months ago[Removed]
Most Recent 9 months, 4 weeks agoZamanR
1 year, 5 months agoguy276465281819372
1 year, 9 months agointeldarvid
1 year, 10 months agopepgua
1 year, 10 months agoHungarianDish_111
2 years agoazzawim
2 years, 1 month agodq28
2 years, 4 months agomitosenoriko
2 years, 4 months ago