<< Prev Question Next Question >>

Question 39/40

View the exhibit, which contains the partial output of an IKE real-time debug, and then answer the question below.
ike 0: comes 10.0.0.2:500->10.0.0.1:500, ifindex=7....
ike 0: IKEv1 exchange=Aggressive id=baf47d0988e9237f/2f405ef3952f6fda len=430 ike 0: in
BAF47D0988E9237F2F405EF3952F6FDA0110040000000000000001AE0400003C000000010000000
1 000000300101000
ike 0:RemoteSite:4: initiator: aggressive mode get 1st response...
ike 0:RemoteSite:4: VID RFC 3947 4A131c81070358455C5728F20E95452F
ike 0:RemoteSite:4: VID DPD AFCAD71368A1F1C96B8696FC77570100
ike 0:RemoteSite:4: VID FORTIGATE 8299031757A36082C6A621DE000502D7
ike 0:RemoteSite:4: peer is FortiGate/Fortios (v5 b727)
ike 0:RemoteSite:4: VID FRAGMENTATION 4048B7D56EBCE88525E7DE7F00D6C2D3
ike 0:RemoteSite:4: VID FRAGMENTATION 4048B7D56EBCE88525E7DE7F00D6C2D3C0000000 ike 0:RemoteSite:4: received peer identifier FQDN 'remore'
ike 0:RemoteSite:4: negotiation result
ike 0:RemoteSite:4: proposal id = 1:
ike 0:RemoteSite:4: protocol id = ISAKMP:
ike 0:RemoteSite:4: trans_id = KEY_IKE.
ike 0:RemoteSite:4: encapsulation = IKE/none
ike 0:RemoteSite:4: type=OAKLEY_ENCRYPT_ALG, val=AES_CBC, key -len=128 ike 0:RemoteSite:4: type=OAKLEY_HASH_ALG, val=SHA.
ike 0:RemoteSite:4: type-AUTH_METHOD, val=PRESHARED_KEY.
ike 0:RemoteSite:4: type=OAKLEY_GROUP, val=MODP1024.
ike 0:RemoteSite:4: ISAKMP SA lifetime=86400
ike 0:RemoteSite:4: ISAKMP SA baf47d0988e9237f/2f405ef3952f6fda key 16:
B25B6C9384D8BDB24E3DA3DC90CF5E73
ike 0:RemoteSite:4: PSK authentication succeeded
ike 0:RemoteSite:4: authentication OK
ike 0:RemoteSite:4: add INITIAL-CONTACT
ike 0:RemoteSite:4: enc
BAF47D0988E9237F405EF3952F6FDA081004010000000000000080140000181F2E48BFD8E9D603F ike 0:RemoteSite:4: out
BAF47D0988E9237F405EF3952F6FDA08100401000000000000008C2E3FC9BA061816A396F009A12 ike 0:RemoteSite:4: sent IKE msg (agg_i2send): 10.0.0.1:500-10.0.0.2:500, len=140, id=baf47d0988e9237f/2
ike 0:RemoteSite:4: established IKE SA baf47d0988e9237f/2f405ef3952f6fda Which statements about this debug output are correct? (Choose two.)

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (40q)
Question 1: How does FortiManager handle FortiGuard requests from FortiG...
1 commentQuestion 2: What is the purpose of an internal segmentation firewall (IS...
Question 3: An administrator wants to capture ESP traffic between two Fo...
2 commentQuestion 4: Which statements about bulk configuration changes using Fort...
1 commentQuestion 5: Which of the following statements are correct regarding appl...
Question 6: View the IPS exit log, and then answer the question below. #...
1 commentQuestion 7: View the exhibit, which contains the output of a BGP debug c...
1 commentQuestion 8: View the exhibit, which contains an entry in the session tab...
1 commentQuestion 9: An administrator has configured a dial-up IPsec VPN with one...
Question 10: View the exhibit, which contains the output of diagnose sys ...
Question 11: Examine the output of the 'diagnose sys session list expecta...
Question 12: View the exhibit, which contains the output of a web diagnos...
Question 13: Which real time debug should an administrator enable to trou...
Question 14: What does the dirtyflag mean in a FortiGate session?...
Question 15: An administrator has configured a FortiGate device with two ...
Question 16: View the global IPS configuration, and then answer the quest...
Question 17: Which of the following conditions must be met for a static r...
Question 18: View the central management configuration shown in the exhib...
Question 19: What conditions are required for two FortiGate devices to fo...
Question 20: When using the SSL certificate inspection method for HTTPS t...
1 commentQuestion 21: View the exhibit, which contains the output of a diagnose co...
1 commentQuestion 22: The CLI command set intelligent-mode &lt;enable | disable&gt...
Question 23: Which of the following tasks are automated using the Install...
Question 24: An administrator has configured two FortiGate devices for an...
1 commentQuestion 25: Examine the partial output from the IKE real time debug show...
Question 26: View the exhibit, which contains the partial output of a dia...
Question 27: Examine the output from the 'diagnose vpn tunnel list' comma...
Question 28: View the exhibit, which contains the output of diagnose sys ...
Question 29: Two independent FortiGate HA clusters are connected to the s...
Question 30: View the exhibit, which contains the output of a real-time d...
Question 31: A FortiGate is configured as an explicit web proxy. Clients ...
Question 32: Examine the output of the 'diagnose ips anomaly list' comman...
Question 33: A FortiGate device has the following LDAP configuration: (Ex...
Question 34: View the exhibit, which contains the output of a debug comma...
Question 35: View these partial outputs from two routing debug commands: ...
2 commentQuestion 36: View the exhibit, which contains a partial output of an IKE ...
Question 37: View the following FortiGate configuration. (Exhibit) All tr...
Question 38: View the exhibit, which contains the partial output of an IK...
Question 39: View the exhibit, which contains the partial output of an IK...
Question 40: What global configuration setting changes the behavior for c...