What is a characteristic of the IPsec ESP tunnel mode? It encrypts the entire original packet. It encrypts and authenticates only the original packet payload. It uses the original IP header to route packets. It encrypts both the IPsec and ESP headers.

IT Exam Items RepositoryCategory: CCNPWhat is a characteristic of the IPsec ESP tunnel mode? It encrypts the entire original packet. It encrypts and authenticates only the original packet payload. It uses the original IP header to route packets. It encrypts both the IPsec and ESP headers.

What is the first configuration step required to create pre-shared keys for IPsec protected DMVPN networks?

  • creating an IKEv2 keyring
  • creating a peer name
  • identifying the IP address of peer routers
  • defining the pre-shared keys

Explanation: There are four components of pre-shared key configuration:

  • IKEv2 keyring
  • IKEv2 profile
  • IPsec transform set
  • IPsec profile

The first step is to create the IKEv2 keyring. This keyring is referenced in the IKEv2 profile configuration.

Related exam: Chapter 20: Quiz - Securing DMVPN Tunnels CCNPv8 ENARSI