ExamQuestions.com

Register
Login
CCIE Security Written Exam (400-251) Exam Questions

Cisco

CCIE Security Written Exam (400-251)

89 / 530

Question 89:

Comparing and contrasting IKEv1 and IKEv2, which three statements are true? (Choose three.) 

Answer options:

A. IKEv2 adds EAP as a method of authentication for clients; IKEv1 does not use EAP.
B. IKEv1 and IKEv2 endpoints indicate support for NAT-T via the vendor_ID payload.
C. IKEv2 and IKEv1 always ensure protection of the identities of the peers during the negotiation process.
D. IKEv2 provides user authentication via the IKE_AUTH exchange; IKEv1 uses the XAUTH exchange.
E. IKEv1 and IKEv2 both use INITIAL_CONTACT to synchronize SAs.
F. IKEv1 supports config mode via the SET/ACK and REQUEST/RESPONSE methods; IKEv2 supports only REQUEST/RESPONSE.