nerdexam
Fortinet

NSE4_FGT-6.2 · Question #39

An administrator wants to create a policy-based IPsec VPN tunnel between two FortiGate devices Which configuration steps must be performed on both devices to support this scenario? (Choose three.)

The correct answer is A. Define the phase 1 parameters, without enabling IPsec interface mode B. Define the phase 2 parameters D. Define at least one firewall policy, with the action set to IPsec. See the full explanation below for the reasoning.

Question

An administrator wants to create a policy-based IPsec VPN tunnel between two FortiGate devices Which configuration steps must be performed on both devices to support this scenario? (Choose three.)

Options

  • ADefine the phase 1 parameters, without enabling IPsec interface mode
  • BDefine the phase 2 parameters
  • CSet the phase 2 encapsulation method to transport mode
  • DDefine at least one firewall policy, with the action set to IPsec
  • EDefine a route to the remote network over the IPsec tunnel

How the community answered

(52 responses)
  • A
    73% (38)
  • C
    19% (10)
  • E
    8% (4)

Community Discussion

No community discussion yet for this question.

Full NSE4_FGT-6.2 Practice