nerdexam
Fortinet

NSE7_SDW-7.2 · Question #13

Refer to the exhibit. FortiGate has multiple dial-up VPN interfaces incoming on port1 that match only FIRST_VPN. Which two configuration changes must be made to both IPsec VPN interfaces to allow…

The correct answer is A. Specify a unique peer ID for each dial-up VPN interface. C. Configure the IKE mode to be aggressive mode. See the full explanation below for the reasoning.

Question

Refer to the exhibit. FortiGate has multiple dial-up VPN interfaces incoming on port1 that match only FIRST_VPN. Which two configuration changes must be made to both IPsec VPN interfaces to allow incoming connections to match all possible IPsec dial-up interfaces? (Choose two.)

Exhibit

NSE7_SDW-7.2 question #13 exhibit

Options

  • ASpecify a unique peer ID for each dial-up VPN interface.
  • BUse different proposals are used between the interfaces.
  • CConfigure the IKE mode to be aggressive mode.
  • DUse unique Diffie Hellman groups on each VPN interface.

How the community answered

(25 responses)
  • A
    84% (21)
  • B
    12% (3)
  • D
    4% (1)

Community Discussion

No community discussion yet for this question.

Full NSE7_SDW-7.2 Practice