题目内容
(请给出正确答案)
[多选题]
在安全网关设备上通过displaipsecsa命令显示如下信息,通过该信息可知()。===============================Interface:Serial0/2/1pathMTU:1500===============================-----------------------------IPsecpolicname:"1"sequencenumber:1mode:isakmp-----------------------------Connectionid:5Encapsulationmode:transportperfectforwardsecrec:Nonetunnel:Localaddress:10.2.1.1Remoteaddress:10.2.1.2Flow:Souraddr:10.1.1.0/255.255.255.0port:0protocol:IPdestaddr:10.3.1.0/255.255.255.0port:0protocol:IP[inboundESPSAs]Spi:909448761(0x36351639)Proposal:ESP-ENCRPT-DESESP-AUTH-MD5Saremainingkeduration(btes/sec):1887435204/83Maxreceivedsequence-number:19Udpencapsulationusedfornattraversal:N[outboundESPSAs]Spi:1583842120(0x5e678348)Proposal:ESP-ENCRPT-DESESP-AUTH-MD5Saremainingkeduration(btes/sec):1887435204/83maxsentsequence-number:20Udpencapsulationusedfornattraversal:N
A.此安全策略工作在隧道模式
B.此安全策略未启动IPSec/IKE的NAT穿越功能
C.此安全策略采用的是ESP+AH的封装协议
D.此安全策略IKE动态协商密钥,SPI,安全协议和算法等参数
查看答案
如果结果不匹配,请 联系老师 获取答案