AWS Certified Advanced Networking - Specialty

You need to set up a VPN between AWS VPC and your on-premises network. You create a VPN connection in the AWS Management Console, download the configuration file, and install it on your on-premises router. The tunnel is not coming up because of firewall restrictions on your router. Which two network traffic options should you allow through the firewall? (Select two.)

UDP port 500
IP protocol 50
IP protocol 5
TCP port 50
TCP port 500