Fortinet
FCSS_NST_SE-7.4 · Question #76
Refer to the exhibit, which contains the partial configuration of an IPsec VPN configuration. After reviewing the configuration, what can you conclude about the IPsec VPN Phase 1 setup?
The correct answer is D. The tunnel is configured as a route-based VPN. The use of a phase1-interface indicates this is a route‑based IPsec tunnel (it creates a virtual interface rather than using policy‑based selectors).
VPN Troubleshooting
Question
Refer to the exhibit, which contains the partial configuration of an IPsec VPN configuration. After reviewing the configuration, what can you conclude about the IPsec VPN Phase 1 setup?
Exhibit
Options
- AThe VPN is configured using IKEv2.
- BDead Peer Detection is disabled.
- CThe VPN is configured with DHCP over IPsec.
- DThe tunnel is configured as a route-based VPN.
How the community answered
(47 responses)- A6% (3)
- B2% (1)
- C17% (8)
- D74% (35)
Explanation
The use of a phase1-interface indicates this is a route‑based IPsec tunnel (it creates a virtual interface rather than using policy‑based selectors).
Topics
#IPsec Phase 1#route-based VPN#IKEv2#Dead Peer Detection
Community Discussion
No community discussion yet for this question.
