View all questions & answers for the FCSS - SD-WAN 7.4 Architect Exam Materials exam
Question 28 Discussion
Comments
Selected Answers: A, B, E
D. The remote end can be a third-party IPsec device. Exchange IP is proprietary and cant use third party devices.
Selected Answers: A, B, D
True – Because mode-cfg is disabled, IP assignment is manual.
B. The remote end must support IKEv2.
True – The configuration explicitly uses ike-version 2.
D. The remote end can be a third-party IPsec device.
True – peertype any allows non-FortiGate devices.
-
Mohamed Shaban
2025-07-30 02:15:11
I change my answer to A,B,E
Refer to the exhibit. The administrator configured the IPsec tunnel VPN1 on a FortiGate device with the parameters shown in exhibit. Based on the configuration, which three conclusions can you draw about the characteristics and requirements of the VPN tunnel? (Choose three answers)
Brave-Dump Clients Votes