Which of the following actions do NOT take place in IKE Phase 1?
A.
Each side generates a session key from its private key and the peer’s public key.
B.
Diffie-Hellman key is combined with the key material to produce the symmetrical IPsec key.
C.
Peers agree on integrity method.
D.
Peers agree on encryption method.
Explanation:
B , for your reference: https://sc1.checkpoint.com/documents/R77/CP_R77_VPN_AdminGuide/13847.htm
No it must be “A”. DH is a part of IKE and IPSec SA. DH System is 4 creating symmetrical keys without sending the key, e.g. over the internet…
IKE 1:
A Diffie-Hellman key is created. The nature of the Diffie-Hellman protocol means that both sides can independently create the shared secret, a key which is known only to the peers.
Ohh sry it must be “B” i wrote “A” sry
correction2: It is “A” DH is a part of IKE 1
Correct answer is B.
IPsec key is generated during IKE Phase 2.