- Home
- All questions
- Question 278
CISSP study material · question 278 of 500
A packet arrives at an IPsec boundary and matches no rule requiring protection. Which three outcomes does the security policy database allow for traffic at that boundary? Choose three.
Show the answer
Answer: B. The packet is allowed to bypass IPsec protection.
D. The packet is protected using IPsec security services.
C. The packet is discarded.
RFC 4301 has traffic at the IPsec boundary protected, discarded, or allowed to bypass IPsec protection, according to the applicable policy database entries.
Source: RFC 4301 (IETF) — RFC 4301 > 3.1 What IPsec Does