Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam NSE4_FGT-7.2 All Questions
Exam NSE4_FGT-7.2 All Questions

View all questions & answers for the NSE4_FGT-7.2 exam

Fortinet NSE4 NSE4_FGT-7.2 Question # 41 Topic 5 Discussion

NSE4_FGT-7.2 Exam Topic 5 Question 41 Discussion:
Question #: 41
Topic #: 5

A network administrator wants to set up redundant IPsec VPN tunnels on FortiGate by using two IPsec VPN tunnels and static routes.

* All traffic must be routed through the primary tunnel when both tunnels are up

* The secondary tunnel must be used only if the primary tunnel goes down

* In addition, FortiGate should be able to detect a dead tunnel to speed up tunnel failover

Which two key configuration changes are needed on FortiGate to meet the design requirements? (Choose two,)


A.

Configure a high distance on the static route for the primary tunnel, and a lower distance on the static route for the secondary tunnel.


B.

Enable Dead Peer Detection.


C.

Configure a lower distance on the static route for the primary tunnel, and a higher distance on the static route for the secondary tunnel.


D.

Enable Auto-negotiate and Autokey Keep Alive on the phase 2 configuration of both tunnels.


Get Premium NSE4_FGT-7.2 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.