ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 12 - FCP_FGT_AD-7.4 discussion

Report
Export

An employee needs to connect to the office through a high-latency internet connection.

Which SSL VPN setting should the administrator adjust to prevent SSL VPN negotiation failure?

A.
SSL VPN idle-timeout
Answers
A.
SSL VPN idle-timeout
B.
SSL VPN login-timeout
Answers
B.
SSL VPN login-timeout
C.
SSL VPN dtls-hello-timeout
Answers
C.
SSL VPN dtls-hello-timeout
D.
SSL VPN session-ttl
Answers
D.
SSL VPN session-ttl
Suggested answer: C

Explanation:

For a high-latency internet connection, the SSL VPN setting that should be adjusted is:C . SSL VPN dtls-hello-timeout: This setting determines how long the FortiGate will wait for aDTLS hello message from the client. For high-latency connections, increasing this timeout willprevent SSL VPN negotiation failures caused by delays in receiving the DTLS hello message.The other options are not suitable:A . SSL VPN idle-timeout: This setting controls the idle time allowed before a session isterminated, which is not relevant to the initial connection establishment.B . SSL VPN login-timeout: This setting controls the maximum time allowed for a user to log in,but does not affect connection negotiation.D . SSL VPN session-ttl: This setting controls the total time-to-live for an SSL VPN session butdoes not directly address issues caused by high latency.ReferenceFortiOS 7.4.1 Administration Guide - SSL VPN Configuration, page 1415.

asked 18/09/2024
Jay Chua
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first