What needs to be configured in Phase 2 of a route-based VPN, that does not need to be configured in a policy-based VPN?
A. proxy-id
B. tunnel-binding
C. transport mode
D. custom proposals
Tunnel Binding is accomplished during which part of the VPN configuration process?
A. Phase 1
B. Phase 2
C. Route Creation
D. Replay protection
E. Tunnel Interface Creation
You are looking at the event log of the initiating device and it says: Received notify message for DOI <1> <14>
A. Phase 2 PFS failure
B. Phase 1 gateway failure
C. Phase 1 proposal mismatch
D. Phase 2 proposal mismatch
Which item is different when configuring a route-based VPN gateway than a policy-based VPN gateway?
A. Gateway
B. Security Proposal
C. Outgoing interface
D. Binding a tunnel interface
What needs to be configured during phase 2 of a route-based VPN, that does not have to be configured during a policy-based VPN?
A. Proxy-id
B. Tunnel-binding
C. Transport mode
D. Replay protection
E. Custom proposals
Which two configuration components are different when configuring a route-based VPN gateway rather than a policy-based VPN gateway? (Choose two.)
A. outgoing interface
B. proxy-id information
C. binding a tunnel interface
D. remote IKE gateway IP address
Your VPN tunnel does not pass traffic. You run the get ike cookie command and discover that there is no cookie.
Which two should be verified? (Choose two.)
A. routes
B. Phase 1 configuration options
C. Phase 2 configuration options
D. selected quick mode encryption algorithms
You are looking at the event log of the responding device and it says: Rejected an initial Phase 1 packet from an unrecognized peer gateway What are three likely reasons for the failure? (Choose three.)
A. The peer ID is misconfigured.
B. The default gateway is missing.
C. The preshare keys are mismatched.
D. The gateway address is misconfigured.
E. The outgoing interface is misconfigured.
Your VPN is failing during Phase 2 negotiation, and you are the initiator. You check your local event log and see IPSec messages but no failures.
What is the next logical troubleshooting step?
A. View the event log of the responding gateway.
B. Configure the peer-id on your local IKE gateway.
C. Double check routing reacheability to the remote network.
D. Turn on logging in the policy and check the event logs again.
Your VPN tunnel does not pass traffic. You run the get ike cookie command and discover that there is no cookie. What two (2) options should you check?
A. Routes
B. Policy configuration
C. Phase 1 configuration options
D. Phase 2 configuration options
Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Juniper exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your JN0-740 exam preparations and Juniper certification application, do not hesitate to visit our Vcedump.com to find your solutions here.