What is NOT true about the FWZ-1 encryption algorithm?
A.
It uses in-place encryption.
B.
It uses RDP to manage VPN session keys.
C.
It encrypts all data including the headers.
D.
Supports a 40-56 bit encryption key.
Explanation:
: FWZ uses in place encryption, encrypting the payload portion (data) of the packet and leaving
the original TCP/IP headers intact. Because packet size is not increased, in place encryption
allows for better network performance than the provided by IKE encryption. A drawback of using
in-place encryption is that the headers remain intact, indicating the origin IP address and
destination IP address See Page 7.16 of CCSE NG Official Courseware.(VPN1-FW1 Management
II NG FP-1).
I do not believe this question was in any recent exam. The FWZ-1 scheme was removed from the Check Point software more than ten years ago!