View all questions & answers for the FCSS - SD-WAN 7.4 Architect Exam Materials exam


Question 19 Discussion

You are tasked with configuring ADVPN 2.0 on an SD-WAN topology already configured for ADVPN. What should you do to implement ADVPN 2.0 in this scenario? (Choose one answer)

  • A. Update the SD-WAN configuration on the branches.
  • B. Update the IPsec tunnel configuration on the branches.
  • C. Update the IPsec tunnel configurations on the hub.
  • D. Delete the existing ADVPN configuration and configure ADVPN 2.0.
Correct Answer: A

Brave-Dump Clients Votes

A 80%
C 20%

Comments



007user 2025-07-15 05:06:24

Selected Answers: C


ADVPN 2.0 is enabled on the hub. Spokes adapt automatically. No need to reconfigure branches.


michael 2025-07-18 01:52:30

Selected Answers: A


According to p 380. no changes required in HUB.


Jonathan 2025-08-12 17:51:46

Selected Answers: C


Hello Omar

Have somebody been able to validate this question ? From My pov i believe ADVPN is most importantly configured on the HUB so that spokes can dynamically learn and establish tunnels
  • Brave-Dumps Admin 2025-08-12 18:00:04
    Hi Jonathan, i added a new comment, please check it.


Brave-Dumps Admin 2025-08-12 18:05:28

Selected Answers: A


As per Fortinet, the only source to prepare for this exam is the study guide, as per study guide page 380:

First, within the IPsec phase1 configuration, you enable the parameter auto-discovery-receiver on the spokes, and the parameters auto-discovery-sender and auto-discovery-forwarder on the hub...
Then, in the SD-WAN section, you enable ADVPN 2.0 by enabling advpn-select at the SD-WAN zone level.

you can download the guides and books from: https://brave-dumps.com/study-and-lab-guides


Tony 2025-09-27 08:44:53

Selected Answers: A


p380 shows "SD-WAN" portion is made on every spoke, not hub.


Michael 2025-10-07 01:35:12

Selected Answers: A


https://docs.fortinet.com/document/fortigate/7.4.2/administration-guide/196824/sd-wan-cli-configuration


Jim Abshire 2025-10-19 15:06:05

Selected Answers: A


From page 380
"The hub configuration remains similar. You don't need to configure specific parameters to use ADVPN 2.0"


Mohamed 2025-11-03 04:58:28

Selected Answers: A


Given answer is incorrect. The answer is D. From SD-WAN 7.4 Architect, page 382: "To adjust the configuration for ADVPN 2.0: - Edit the SD-WAN template... - IPsec templates: No changes required..." Therefore, the configuration changes occur with the SD-WAN configuration and not the IPsec configuration.


Mohamed 2025-11-03 04:58:28

Selected Answers: A


Given answer is incorrect. The answer is D. From SD-WAN 7.4 Architect, page 382: "To adjust the configuration for ADVPN 2.0: - Edit the SD-WAN template... - IPsec templates: No changes required..." Therefore, the configuration changes occur with the SD-WAN configuration and not the IPsec configuration.


Mohamed 2025-11-03 04:58:28

Selected Answers: A


Given answer is incorrect. The answer is D. From SD-WAN 7.4 Architect, page 382: "To adjust the configuration for ADVPN 2.0: - Edit the SD-WAN template... - IPsec templates: No changes required..." Therefore, the configuration changes occur with the SD-WAN configuration and not the IPsec configuration.