nerdexam
Fortinet

NSE7_SDW-7.2 · Question #23

Refer to the exhibit. Which two statements about the IPsec VPN configuration and the status of the IPsec VPN tunnel are true? (Choose two.)

The correct answer is B. FortiGate creates a single IPsec virtual interface that is shared by all clients. C. FortiGate maps the remote gateway 100.64.3.1 to tunnel index interface 1. If net-device is disabled, FortiGate creates a single IPSEC virtual interface that is shared by all IPSEC clients connecting to the same dialup VPN. In this case, the tunnel-search setting determines how FortiGate learns the network behind each remote client.

SD-WAN Deployment and Configuration

Question

Refer to the exhibit. Which two statements about the IPsec VPN configuration and the status of the IPsec VPN tunnel are true? (Choose two.)

Exhibit

NSE7_SDW-7.2 question #23 exhibit

Options

  • AFortiGate creates separate virtual interfaces for each dial-up client.
  • BFortiGate creates a single IPsec virtual interface that is shared by all clients.
  • CFortiGate maps the remote gateway 100.64.3.1 to tunnel index interface 1.
  • DFortiGate does not install IPsec static routes for remote protected networks in the routing table.

How the community answered

(29 responses)
  • A
    14% (4)
  • B
    79% (23)
  • D
    7% (2)

Explanation

If net-device is disabled, FortiGate creates a single IPSEC virtual interface that is shared by all IPSEC clients connecting to the same dialup VPN. In this case, the tunnel-search setting determines how FortiGate learns the network behind each remote client.

Topics

#IPsec VPN#dial-up VPN#virtual interfaces#tunnel index

Community Discussion

No community discussion yet for this question.

Full NSE7_SDW-7.2 Practice