nerdexam
Fortinet

NSE4_FGT-6.0 · Question #9

An administrator wants to create a policy-based IPsec VPN tunnel between two FortiGate devices Winch configuration steps must be performed on both devices to support this scenario? (Choose three.)

The correct answer is A. Define the phase 1 parameters, without enabling IPsec interface mode. B. Define the phase 2 parameters. D. Create at least one firewall policy, with the protocol set to IPsec. See the full explanation below for the reasoning.

Question

An administrator wants to create a policy-based IPsec VPN tunnel between two FortiGate devices Winch configuration steps must be performed on both devices to support this scenario? (Choose three.)

Options

  • ADefine the phase 1 parameters, without enabling IPsec interface mode.
  • BDefine the phase 2 parameters.
  • CSet the phase 2 encapsulation method to transport mode.
  • DCreate at least one firewall policy, with the protocol set to IPsec.
  • EDefine a route to the remote network over the IPsec tunnel.

How the community answered

(63 responses)
  • A
    83% (52)
  • C
    11% (7)
  • E
    6% (4)

Community Discussion

No community discussion yet for this question.

Full NSE4_FGT-6.0 Practice