nerdexam
Fortinet

NSE8_812 · Question #72

A FortiGate is configured for a dial-up IPsec VPN to allow multiple FortiGate devices to connect to it. However, FortiGate A and B have problems connecting to the VPN. Only one of them can be…

The correct answer is A. set route-overlap allow. See the full explanation below for the reasoning.

Question

A FortiGate is configured for a dial-up IPsec VPN to allow multiple FortiGate devices to connect to it. However, FortiGate A and B have problems connecting to the VPN. Only one of them can be connected at a time. If site B tries to connect while site A is connected, site A is disconnected. The IKE real-time debug shows the output in the exhibit when site A is disconnected. Referring to the exhibit, which configuration setting should be executed in the dial-up configuration to allow both VPNs to be connected at the same time?

Options

  • Aset route-overlap allow
  • Bset single-source disable
  • Cset enforce-unique-id disable
  • Dset addr-route enable

How the community answered

(36 responses)
  • A
    72% (26)
  • B
    8% (3)
  • C
    6% (2)
  • D
    14% (5)

Community Discussion

No community discussion yet for this question.

Full NSE8_812 Practice