A firewall administrator is configuring an IPSec tunnel between Site A and Site B. The Site A firewall uses a DHCP assigned address on the outside interface of the firewall, and the Site B firewall uses a static IP address assigned to the outside interface of the firewall. However, the use of dynamic peering is not working. Refer to the two sets of configuration settings provided. Which two changes will allow the configurations to work? (Choose two.) Site A configuration:Site B configuration:
A. Match IKE version on both firewalls. B. Configure Local Identification on Site B firewall. C. Enable NAT Traversal on Site B firewall. D. Disable passive mode on Site A firewall. Â Suggested Answer: AD This question is in PCNSE Palo Alto Networks Certified Network Security Engineer Exam For getting Palo Alto Networks Certified Network Security Engineer (PCNSE) Certificate Disclaimers: The website is not related to, affiliated with, endorsed or authorized by Palo Alto Networks. Trademarks, certification & product names are used for reference only and belong to Palo Alto Networks. The website does not contain actual questions and answers from Palo Alto Networks's Certification Exams.
Please login or Register to submit your answer