nerdexam
Fortinet

NSE8_812 · Question #162

You have configured a Site-to-Site IPsec VPN tunnel between a FortiGate and a third-party device but notice that one of the error counters on the tunnel interface keeps increasing. Which two…

The correct answer is B. Enable DF-bit honoring in the global settings. D. Adjust the MTU of the IPsec interface. See the full explanation below for the reasoning.

Question

You have configured a Site-to-Site IPsec VPN tunnel between a FortiGate and a third-party device but notice that one of the error counters on the tunnel interface keeps increasing. Which two configuration options can resolve this problem? (Choose two.)

Options

  • AEnable Forward Error Correction (FEC) on the VPN interface for egress traffic.
  • BEnable DF-bit honoring in the global settings.
  • CAdjust the MTU of the physical interface to which the IPsec tunnel is bound.
  • DAdjust the MTU of the IPsec interface.

How the community answered

(31 responses)
  • A
    6% (2)
  • B
    74% (23)
  • C
    19% (6)

Community Discussion

No community discussion yet for this question.

Full NSE8_812 Practice