Fortinet
NSE7_SDW-7.2 · Question #13
Refer to the exhibit. FortiGate has multiple dial-up VPN interfaces incoming on port1 that match only FIRST_VPN. Which two configuration changes must be made to both IPsec VPN interfaces to allow…
The correct answer is A. Specify a unique peer ID for each dial-up VPN interface. C. Configure the IKE mode to be aggressive mode. See the full explanation below for the reasoning.
Question
Refer to the exhibit. FortiGate has multiple dial-up VPN interfaces incoming on port1 that match only FIRST_VPN. Which two configuration changes must be made to both IPsec VPN interfaces to allow incoming connections to match all possible IPsec dial-up interfaces? (Choose two.)
Exhibit
Options
- ASpecify a unique peer ID for each dial-up VPN interface.
- BUse different proposals are used between the interfaces.
- CConfigure the IKE mode to be aggressive mode.
- DUse unique Diffie Hellman groups on each VPN interface.
How the community answered
(25 responses)- A84% (21)
- B12% (3)
- D4% (1)
Community Discussion
No community discussion yet for this question.
