nse4_fgt-72 Exam QuestionsBrowse all questions from this exam

nse4_fgt-72 Exam - Question 10


An administrator is configuring an IPsec VPN between site A and site B. The Remote Gateway setting in both sites has been configured as Static IP Address. For site A, the local quick mode selector is 192.168.1.0/24 and the remote quick mode selector is 192.168.2.0/24.

Which subnet must the administrator configure for the local quick mode selector for site B?

Show Answer
Correct Answer: AC

In an IPsec VPN configuration, the local quick mode selector of one site typically matches the remote quick mode selector of the other site. Since site A has been configured with a local quick mode selector of 192.168.1.0/24 and a remote quick mode selector of 192.168.2.0/24, to correctly establish the VPN, site B's local quick mode selector must be 192.168.2.0/24.

Discussion

17 comments
Sign in to comment
SpagoOption: A
Jan 7, 2023

A. 192.168.2.0/24 For an IPsec VPN between site A and site B, the administrator has configured the local quick mode selector for site A as 192.168.1.0/24 and the remote quick mode selector as 192.168.2.0/24. This means that the VPN will allow traffic to and from the 192.168.1.0/24 subnet at site A to reach the 192.168.2.0/24 subnet at site B. To complete the configuration, the administrator must configure the local quick mode selector for site B. To do this, the administrator must use the same subnet as the remote quick mode selector for site A, which is 192.168.2.0/24. This will allow traffic to and from the 192.168.2.0/24 subnet at site B to reach the 192.168.1.0/24 subnet at site A. Therefore, the administrator must configure the local quick mode selector for site B as 192.168.2.0/24.

erawemkOption: A
Jul 2, 2023

SiteA: local quick mode selector is 192.168.1.0/24 and the remote quick mode selector is 192.168.2.0/24 SiteB: local quick mode selector is 192.168.2.0/24 and the remote quick mode selector is 192.168.1.0/24 This is set to make a working Phase 2 VPN configuration, the tricky words are local and SiteB

alejandrofern43Option: A
Jul 24, 2023

Si configuro primero el A, colocando un local y un remoto, debe copiar lo mismo en el B. Pero invertido.

Mallu_92Option: A
Mar 18, 2024

Its quite well explained that A site has local subnet of 192.168.1.0/24, how on earth could site B have the same local subnet and then we should expect this setup to work somehow? :D The From A-site perspective the remote B-site network is 192.168.2.0/24, which would dircelty tell us that from B-perspective, remote is 192.168.1.0/24 and local must therefore be 192.168.2.0/24 for this tunnel to work properly.

Danny_BOption: A
May 24, 2023

Has to be mirrored

umairmasoodOption: A
Jun 3, 2023

A. is valid

AgentSmithOption: A
Jun 25, 2023

A. 192.168.2.0/24

Slash_JMOption: A
Aug 29, 2023

192.168.2.0/24

Vic2911Option: A
Sep 4, 2023

Correct answer is A

raydel92Option: A
Sep 8, 2023

A. 192.168.2.0/24 Reference and download study guide: https://ebin.pub/fortinet-fortigate-infrastructure-study-guide-for-fortios-72.html

SfelekaOption: A
Oct 16, 2023

A is the correct answer

hebdebOption: A
Oct 17, 2023

Opuesto del site A

GeniusAOption: A
Dec 19, 2023

Option A is the correct answer

AMK2ENGOption: A
Dec 22, 2023

A. 192.168.2.0/24

Umbrella2000Option: A
Jan 28, 2024

In an IPsec VPN configuration, the local quick mode selector for one site is typically the remote quick mode selector for the other site123. This is because the local and remote selectors define the subnets that will be involved in the VPN connection123. Given that the local quick mode selector for site A is 192.168.1.0/24 and the remote quick mode selector is 192.168.2.0/24, the local quick mode selector for site B should be the remote quick mode selector of site A. Therefore, the correct answer is: A. 192.168.2.0/24

GopiChandMurariOption: A
Apr 5, 2024

For site B, the local quick mode selector should be the opposite of what's configured for site A's remote quick mode selector. Therefore, it should be: Local quick mode selector for site B: 192.168.2.0/24.

MqbxOption: A
Apr 8, 2024

A is right