Fortinet
NSE4_FGT-6.4 · Question #113
Which two statements about IPsec authentication on FortiGate are correct? (Choose two.)
The correct answer is A. For a stronger authentication, you can also enable extended authentication (XAuth) to request the B. FortiGate supports pre-shared key and signature as authentication methods. https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/913287/ipsec-vpn-authenticating- aremote- fortigate-peer-with-a-pre-shared-key
VPN
Question
Which two statements about IPsec authentication on FortiGate are correct? (Choose two.)
Options
- AFor a stronger authentication, you can also enable extended authentication (XAuth) to request the
- BFortiGate supports pre-shared key and signature as authentication methods.
- CEnabling XAuth results in a faster authentication because fewer packets are exchanged.
- DA certificate is not required on the remote peer when you set the signature as the authentication
How the community answered
(29 responses)- A79% (23)
- C7% (2)
- D14% (4)
Explanation
https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/913287/ipsec-vpn-authenticating- aremote- fortigate-peer-with-a-pre-shared-key
Topics
#IPsec authentication#XAuth#pre-shared key#certificate authentication
Community Discussion
No community discussion yet for this question.