ExamGecko
Question list
Search
Search

Question 7 - NSE5_FAZ-7.2 discussion

Report
Export

Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with IPsec? (Choose two.)

A.
Must configure the FortiAnalyzer end of the tunnel only--the FortiGate end is auto-negotiated.
Answers
A.
Must configure the FortiAnalyzer end of the tunnel only--the FortiGate end is auto-negotiated.
B.
Must establish an IPsec tunnel ID and pre-shared key.
Answers
B.
Must establish an IPsec tunnel ID and pre-shared key.
C.
IPsec cannot be enabled if SSL is enabled as well.
Answers
C.
IPsec cannot be enabled if SSL is enabled as well.
D.
IPsec is only enabled through the CLI on FortiAnalyzer.
Answers
D.
IPsec is only enabled through the CLI on FortiAnalyzer.
Suggested answer: B, D

Explanation:

Option B is correct because you must establish an IPsec tunnel ID and pre-shared key to secure the communication between FortiAnalyzer and FortiGate with IPsec12. The tunnel ID is a unique identifier for each tunnel and the pre-shared key is a secret passphrase that authenticates the peers.

Option D is correct because IPsec is only enabled through the CLI on FortiAnalyzer1. You cannot configure IPsec settings through the GUI on FortiAnalyzer.

asked 18/09/2024
Eduardo Lapuente
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first