ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 10 - FCP_FGT_AD-7.4 discussion

Report
Export

A network administrator wants to set up redundant IPsec VPN tunnels on FortiGate by using two IPsec VPN tunnels and static routes.

All traffic must be routed through the primary tunnel when both tunnels are up. The secondary tunnel must be used only if the primary tunnel goes down. In addition, FortiGate should be able to detect a dead tunnel to speed up tunnel failover.

Which two key configuration changes must the administrator make on FortiGate to meet the requirements? (Choose two.)

A.
Enable Dead Peer Detection
Answers
A.
Enable Dead Peer Detection
B.
Enable Auto-negotiate and Autokey Keep Alive on the phase 2 configuration of both tunnels.
Answers
B.
Enable Auto-negotiate and Autokey Keep Alive on the phase 2 configuration of both tunnels.
C.
Configure a lower distance on the static route for the primary tunnel, and a higher distance on the static route for the secondary tunnel.
Answers
C.
Configure a lower distance on the static route for the primary tunnel, and a higher distance on the static route for the secondary tunnel.
D.
Configure a higher distance on the static route for the primary tunnel, and a lower distance on the static route for the secondary tunnel.
Answers
D.
Configure a higher distance on the static route for the primary tunnel, and a lower distance on the static route for the secondary tunnel.
Suggested answer: A, C
asked 18/09/2024
Komalaharshini Basireddygari
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first