Site-to-Site IPSec VPN II

Descripción

NSE4 6.0 NSE4 6.0 Test sobre Site-to-Site IPSec VPN II, creado por Marcos Avila el 22/07/2018.
Marcos Avila
Test por Marcos Avila, actualizado hace más de 1 año
Marcos Avila
Creado por Marcos Avila hace casi 6 años
138
1

Resumen del Recurso

Pregunta 1

Pregunta
ADVPN
Respuesta
  • Auto discovery VPN
  • Active Directory VPN
  • Active Direct VPN

Pregunta 2

Pregunta
Which VPN topology does not allow direct communication between spokes?
Respuesta
  • a. Partial mesh
  • b. Hub-and-spoke

Pregunta 3

Pregunta
Which VPN topology is the most fault tolerant?
Respuesta
  • a. Full mesh
  • b. Hub-and-spoke

Pregunta 4

Pregunta
FortiGate operation mode: NAT and transparent L2TP-over—lPsec: Yes GRE—over—lPsec: No Routing protocols: No Number of policies per VPN: One policy controls both traffic directions
Respuesta
  • Policy-based
  • Route-based

Pregunta 5

Pregunta
FortiGate operation mode: Only NAT L2TP-over—lPsec: Yes GRE—over—lPsec: Yes Routing protocols: Yes Number of policies per VPN: Two policies (usually)—one for each direction
Respuesta
  • Policy-based
  • Route-based

Pregunta 6

Pregunta
Transparent mode supports only policy-based VPNs
Respuesta
  • True
  • False

Pregunta 7

Pregunta
Generally, try to use policy-based because it offers more flexibility and control.
Respuesta
  • True
  • False

Pregunta 8

Pregunta
Traffic must be routed to the lPsec virtual network interface. Usually two firewall policies with the Action set to ACCEPT are required (one per direction).
Respuesta
  • Route-based (interface-based)
  • Policy-based (tunnel-based)

Pregunta 9

Pregunta
One firewall policy with the Action set to lPsec is required. By default, hidden on the GUI. To show.
Respuesta
  • Route-based (interface-based)
  • Policy-based (tunnel-based)

Pregunta 10

Pregunta
Wizard vpn creates only route-based VPNs
Respuesta
  • True
  • False

Pregunta 11

Pregunta
SD-WAN feature can also be used for VPN redundancy.
Respuesta
  • True
  • False

Pregunta 12

Pregunta
[blank_start]1-[blank_end] Add one phase 1 configuration for each tunnel. Dead peer detection (DPD) must be enabled on both ends. [blank_start]2-[blank_end] Add at least one phase 2 definition for each phase 1. [blank_start]3-[blank_end] Add one static route for each path. Use distance or priority to select primary routes over backup routes. Alternatively, use dynamic routing. [blank_start]4-[blank_end] Configure firewall policies for each lPsec interface.
Respuesta
  • 1-
  • 2-
  • 3-
  • 4-

Pregunta 13

Pregunta
When configuring policy-based VPN, what option do you need to select for the Action setting?
Respuesta
  • a. IPsec
  • b. Authenticate

Pregunta 14

Pregunta
Which of the following statements about route-based VPN is correct?
Respuesta
  • a. It usually requires two firewall policies—one for each direction.
  • b. One policy controls both traffic directions.

Pregunta 15

Pregunta
diagnose vpn tunnel list - command to verify if traffic is offloaded.
Respuesta
  • True
  • False

Pregunta 16

Pregunta
Keeping a real-time debug running on the background of a FortiGate for a long time it is necessary some times.
Respuesta
  • True
  • False

Pregunta 17

Pregunta
?
Respuesta
  • vpn debug
  • ipsec vpn policy-based debug
  • ipsec vpn routed-based debug

Pregunta 18

Pregunta
Which one of the following messages indicates that both ingress and egress ESP packets will be offloaded?
Respuesta
  • a.npu_flag=00
  • b.npu_flag=03

Pregunta 19

Pregunta
If you enable NAT in the firewall policy for VPN, which of the following issues may occur?
Respuesta
  • a. Quick mode selector may mismatch
  • b. Traffic may not be routed to the tunnel
Mostrar resumen completo Ocultar resumen completo

Similar

Qué Carrera Estudiar
maya velasquez
LA PRIMERA GUERRA MUNDIALO LA GRAN GUERRA
Erika Urban
Práctica de Biología para la Prepa 2
Raúl Fox
FILOSOFÍA MEDIEVAL
Víctor Andrés Martínez Caldas
Francés - Vocabulario Básico
lucero13mp
FLUJOGRAMA
albaluciagpb30
Inglés
maya velasquez
Marketing Digital
Diego Santos
Género lírico
Karina Valles
Artes Escénicas
amanda hernandez
Simulacro Prueba ICFES
pulidonomesque