nse7_efw-72 Exam QuestionsBrowse all questions from this exam

nse7_efw-72 Exam - Question 42


Refer to the exhibit, which shows a partial routing table.

What two conclusions can you draw from the corresponding FortiGate configuration? (Choose two.)

Show Answer
Correct Answer: ABD

From the routing table, we can infer that net-device is enabled in the tunnel IPSec phase 1 configuration because there are distinct interfaces for each tunnel (tunnel_0, tunnel_1). This would be the result of enabling net-device, which allows multiple interfaces for dial-up connections. Additionally, add-route is disabled in the tunnel IPSec phase 1 configuration because there are no static routes added for the tunnels, suggesting that the routing relies on dynamic routing protocols instead of static route additions.

Discussion

2 comments
Sign in to comment
dstichtOptions: BD
May 29, 2024

A. OSPF is only on local interfaces. B. net-device creates separate interfaces for each dial-up, i.e. tunnel_0, tunnel_1 - p311 of Study Guide C. what? D. add-route disabled means static routes are not added and require dynamic routing protocol. - p313 of Study Guide.

charrucoOptions: BD
Jun 15, 2024

B and D are correct