問題文
Two sides negotiate native encryption and the administrator has to make sure that one weak algorithm is never chosen even though both sides still support it. Which configuration achieves that?
選択肢
- Shorten the key renegotiation interval in the profile.
- List the acceptable algorithms in the profile so that the weak one is left out of the negotiation.
- Raise the encryption setting on both sides to required so that the negotiation has to succeed.
- Turn the checksum setting on so that the packets are verified after they arrive.