B is correct
from CCSA R80 guide:
Phase 2 — This phase is called Quick mode. During the phase, SAs are negotiated on
behalf of services such as IPSec, the shared-secret key material is determined, and an
additional DH occurs. Once the two computers reach an agreement, two SAs are
established, one for outbound communication and the other for inbound
communication. The following process occurs:
- More key material is exchanged and IPSec authentication and encryption parameters
are agreed on.
- The DH key is combined with the key material to produce the symmetrical IPSec key.
- IPSec keys are generated.
A bit confused by this:
https://sc1.checkpoint.com/documents/R77/CP_R77_VPN_AdminGuide/html_frameset.htm?topic=documents/R77/CP_R77_VPN_AdminGuide/13847
Diffie-Hellman key is created at Phase 1 but it's not ' combined with the key material to produce the symmetrical IPsec key' ?
upvoted 1 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Nikolas
Highly Voted 4 months, 1 week agooussasm987
Most Recent 10 months, 2 weeks agotrawa05
1 year agoFC49
1 year, 3 months ago