You are evaluating the configuration of a mesh VPN Community used to create a site-to-site VPN. This graphic displays the VPN properties in this mesh Community.
Which of the following would be the most valid conclusion?
A.
The VPN Community will perform IKE Phase 1 key-exchange encryption using the longest key Security Gateway R75 supports.
B.
Changing the setting Perform IPsec data encryption with from AES-128 to 3DES will increase the encryption overhead.
C.
Changing the setting Perform key exchange encryption with 3DES to DES will enhance the VPN Community’s security, and reduce encryption overhead.
D.
Change the data-integrity settings for this VPN CommunitybecauseMD5 is incompatible with AES.
I don’t like any of these answers. There has to be a type-o in one of the possible answers, as none of them are accurate. https://sc1.checkpoint.com/documents/R77/CP_R77_VPN_AdminGuide/13847.htm
never mind. Misread B. I agree.