Fortinet
NSE8_812 · Question #162
You have configured a Site-to-Site IPsec VPN tunnel between a FortiGate and a third-party device but notice that one of the error counters on the tunnel interface keeps increasing. Which two…
The correct answer is B. Enable DF-bit honoring in the global settings. D. Adjust the MTU of the IPsec interface. See the full explanation below for the reasoning.
Question
You have configured a Site-to-Site IPsec VPN tunnel between a FortiGate and a third-party device but notice that one of the error counters on the tunnel interface keeps increasing.
Which two configuration options can resolve this problem? (Choose two.)
Options
- AEnable Forward Error Correction (FEC) on the VPN interface for egress traffic.
- BEnable DF-bit honoring in the global settings.
- CAdjust the MTU of the physical interface to which the IPsec tunnel is bound.
- DAdjust the MTU of the IPsec interface.
How the community answered
(31 responses)- A6% (2)
- B74% (23)
- C19% (6)
Community Discussion
No community discussion yet for this question.