Which of the following statements are correct concerning the IPsec phase 1 and phase 2, shown in the exhibit?

Which of the following statements are correct concerning the IPsec phase 1 and phase 2, shown in the exhibit? (choose two)

A. The quick mode selector in the remote site must also be 0.0.0.0/0 for the source and destination addresses.
B. Only remote peers with the peer ID ‘fortinet’ will be able to establish a VPN.
C. The FortiGate device will automatically add a static route to the source quick mode selector address received from each remote VPN peer.
D. The configuration will work only to establish FortiClient-to-FortiGate tunnels. A FortiGate tunnel requires a different configuration.

Download Printable PDF. VALID exam to help you PASS.

6 thoughts on “Which of the following statements are correct concerning the IPsec phase 1 and phase 2, shown in the exhibit?

  1. Cannot be C. How does this question tell you whether or not “set add-route” has been configured in the CLI?

Leave a Reply

Your email address will not be published. Required fields are marked *


The reCAPTCHA verification period has expired. Please reload the page.