nerdexam
Fortinet

FCSS_NST_SE-7.4 · Question #76

Refer to the exhibit, which contains the partial configuration of an IPsec VPN configuration. After reviewing the configuration, what can you conclude about the IPsec VPN Phase 1 setup?

The correct answer is D. The tunnel is configured as a route-based VPN. The use of a phase1-interface indicates this is a route‑based IPsec tunnel (it creates a virtual interface rather than using policy‑based selectors).

VPN Troubleshooting

Question

Refer to the exhibit, which contains the partial configuration of an IPsec VPN configuration. After reviewing the configuration, what can you conclude about the IPsec VPN Phase 1 setup?

Exhibit

FCSS_NST_SE-7.4 question #76 exhibit

Options

  • AThe VPN is configured using IKEv2.
  • BDead Peer Detection is disabled.
  • CThe VPN is configured with DHCP over IPsec.
  • DThe tunnel is configured as a route-based VPN.

How the community answered

(47 responses)
  • A
    6% (3)
  • B
    2% (1)
  • C
    17% (8)
  • D
    74% (35)

Explanation

The use of a phase1-interface indicates this is a route‑based IPsec tunnel (it creates a virtual interface rather than using policy‑based selectors).

Topics

#IPsec Phase 1#route-based VPN#IKEv2#Dead Peer Detection

Community Discussion

No community discussion yet for this question.

Full FCSS_NST_SE-7.4 Practice