A Cisco FTD engineer is creating a newIKEv2 policy called s2s00123456789 for their organization to allow additional protocols to terminate network devices with.
They currently only have one policy established and need the new policy to be a backup in case some devices cannot support the stronger algorithms listed in the primary policy. What should be done in order to support this?
A. Change the encryption to AES* to support all AES algorithms in the primary policy.
B. Make the priority for the primary policy 10 and the new policy 1.
C. Change the integrity algorithms to SHA* to support all SHA algorithms in the primary policy.
D. Make the priority for the new policy 5 and the primary policy 1.
A Cisco FTD engineer is creating a newIKEv2 policy called s2s00123456789 for their organization to allow additional prot
-
answerhappygod
- Site Admin
- Posts: 899604
- Joined: Mon Aug 02, 2021 8:13 am
A Cisco FTD engineer is creating a newIKEv2 policy called s2s00123456789 for their organization to allow additional prot
Join a community of subject matter experts. Register for FREE to view solutions, replies, and use search function. Request answer by replying!