nerdexam
Fortinet

NSE7_EFW · Question #94

View the exhibit, which contains a screenshot of some phase-1 settings, and then answer the question below. The VPN is up, and DPD packets are being exchanged between both IPsec gateways; however…

The correct answer is B. The log-filter setting was set incorrectly. The VPN's traffic does not match this filter. See the full explanation below for the reasoning.

Question

View the exhibit, which contains a screenshot of some phase-1 settings, and then answer the question below. The VPN is up, and DPD packets are being exchanged between both IPsec gateways; however, traffic cannot pass through the tunnel. To diagnose, the administrator enters these CLI commands:

However, the IKE real time debug does not show any output. Why?

Exhibit

NSE7_EFW question #94 exhibit

Options

  • AThe debug output shows phases 1 and 2 negotiations only. Once the tunnel is up, it does not
  • BThe log-filter setting was set incorrectly. The VPN's traffic does not match this filter.
  • CThe debug shows only error messages. If there is no output, then the tunnel is operating
  • DThe debug output shows phase 1 negotiation only. After that, the administrator must enable the

How the community answered

(28 responses)
  • A
    7% (2)
  • B
    71% (20)
  • C
    18% (5)
  • D
    4% (1)

Community Discussion

No community discussion yet for this question.

Full NSE7_EFW Practice