Multi-Corp wants to implement IKE DoS protection to prevent a denial-of-service (DoS) attack from
paralyzing its VPN Communities. Jerry needs to minimize the performance impact of implementing
this new protection. Which of the following configurations would BEST enable this new protection
with minimal impact to the organization?
A.
Set “Support IKE DoS protection from identified source” to “Puzzles”, and “Support IKE DoS
protection from unidentified source” to “Stateless”.
B.
Set both “Support IKE Dos protection from identified source”, and “Support IKE DoS protection
from unidentified source” to “Puzzles”.
C.
Set both “Support IKE DoS protection from identified source”, and “Support IKE DoS protection
from unidentified source” to “Stateless”
D.
Set “Support IKE DoS protection from identified source” to “Stateless”, and “Support IKE DoS
protection from unidentified source” to “None”.
Explanation: