Click the Exhibit button. Traffic is flowing between the Host-1 and Host-2 devices through a
hub-and-spoke IPsec VPN. All devices are SRX Series devices. Referring to the exhibit,
which two statements are correct? (Choose two.)
A.
Traffic is not encrypted on the Spoke-2 device.
B.
Traffic is not encrypted on the Hub device.
C.
Traffic is encrypted on the Hub device.
D.
Traffic is encrypted on the Spoke-2 device.
Explanation:
oh my God ! someone failed the exam !!
its totally the opposite. the opposite is the correct ! Its c and d !
@ Juniper…..See the traffic flow….from Host-1 Traffic is encrypted at Spoke-1 and decrypted at Spoke 2…
Correct?
i think is B and D
http://www.juniper.net/documentation/en_US/junos12.1/topics/concept/vpn-security-hub-and-spoke-understanding.html
Wrote my JN0-633 exam yesterday for the first try, and finally PASSED! I prepared the exam with passleader JN0-633 dumps (http://www.passleader.com/jn0-633.html) along with my experience in the Juniper field, nothing new in my real exam.
It may be right, since the traffic is encrypted at Spoke-1 and just pass through the hub till be decrypted in spoke-2.
Someone?
C&D. Traffic encrypts and decrypts at all sites.
PMP Certification)
http://www.zkRCZC3urT.com/zkRCZC3urT
Answer is correct
1.> Traffic will enter hub and get de-capsulated then routed to next tunnel
2.> Traffic will then pass to tunnel 2 towards spoke 2 as again get de-capulated at spoke 2
C & D that is
A & C
traffic is encrypt and decrypt for all site . as traffic is receving on spoke 2 which will only decrytp send it to destination host and it wont encrypt towards host 2 since it is not secure tunnel.
traffic from spoke 1 to hub will be decrypt on hub and send encrypted traffic toward spoke 2 .
answer are C and D, the return traffic will be encrypted by SPOKE 2. ENCRYPT ADN DECRYPTED EVERY WHERE