nerdexam
Fortinet

NSE4_FGT-6.4 · Question #113

Which two statements about IPsec authentication on FortiGate are correct? (Choose two.)

The correct answer is A. For a stronger authentication, you can also enable extended authentication (XAuth) to request the B. FortiGate supports pre-shared key and signature as authentication methods. https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/913287/ipsec-vpn-authenticating- aremote- fortigate-peer-with-a-pre-shared-key

VPN

Question

Which two statements about IPsec authentication on FortiGate are correct? (Choose two.)

Options

  • AFor a stronger authentication, you can also enable extended authentication (XAuth) to request the
  • BFortiGate supports pre-shared key and signature as authentication methods.
  • CEnabling XAuth results in a faster authentication because fewer packets are exchanged.
  • DA certificate is not required on the remote peer when you set the signature as the authentication

How the community answered

(29 responses)
  • A
    79% (23)
  • C
    7% (2)
  • D
    14% (4)

Explanation

https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/913287/ipsec-vpn-authenticating- aremote- fortigate-peer-with-a-pre-shared-key

Topics

#IPsec authentication#XAuth#pre-shared key#certificate authentication

Community Discussion

No community discussion yet for this question.

Full NSE4_FGT-6.4 Practice