PrepAway - Latest Free Exam Questions & Answers

What is NOT true about in-place encryption?

What is NOT true about in-place encryption?

PrepAway - Latest Free Exam Questions & Answers

A.
It only supports the FWZ-1 algorithm.

B.
It does not encrypt the IP and TCP headers.

C.
It does not increase the packet size.

D.
It can be used with VPN’s that use reserved IP addresses.

Explanation:

: FWZ uses in place encryption, encrypting the payload portion (data) of the packet and leaving
the original TCP/IP headers intact. Because packet size is not increased, in place encryption
allows for better network performance than the provided by IKE encryption. A drawback of using
in-place encryption is that the headers remain intact, indicating the origin IP address and
destination IP address this prevents the use of reserved IP addresses with the VPN´s. See Page
7.16 of CCSE NG Official Courseware.(VPN1-FW1 Management II NG FP-1).


Leave a Reply