nerdexam
Fortinet

FCP_FGT_AD-7.6 · Question #122

Which two features of IPsec IKEv1 authentication are supported by FortiGate? (Choose two.)

The correct answer is B. Pre-shared key and certificate signature as authentication methods D. Extended authentication (XAuth) to request the remote peer to provide a username and password. Authentication-wise, both versions support PSK and certificate signature. Although only IKEv1 supports XAuth, IKEv2 supports EAP, which is equivalent to XAuth.

Submitted by daniela_cl· Apr 18, 2026VPN

Question

Which two features of IPsec IKEv1 authentication are supported by FortiGate? (Choose two.)

Options

  • AExtended authentication (XAuth) for faster authentication because fewer packets are exchanged
  • BPre-shared key and certificate signature as authentication methods
  • CNo certificate is required on the remote peer when you set the certificate signature as the
  • DExtended authentication (XAuth) to request the remote peer to provide a username and password

How the community answered

(41 responses)
  • A
    10% (4)
  • B
    85% (35)
  • C
    5% (2)

Explanation

Authentication-wise, both versions support PSK and certificate signature. Although only IKEv1 supports XAuth, IKEv2 supports EAP, which is equivalent to XAuth.

Topics

#IPsec VPN#IKEv1 authentication#Pre-shared Key (PSK)#XAuth

Community Discussion

No community discussion yet for this question.

Full FCP_FGT_AD-7.6 Practice