Refer to the exhibit, which shows the IPsec phase 1 configuration of a spoke. What must you configure on the IPsec phase 1 configuration for ADVPN to work with SD-WAN?
A. Disable idle-timeout: While idle timeout can be configured, it is not specifically required for ADVPN to work.
B. Set ike-version to 1: ADVPN works with both IKEv1 and IKEv2, but IKEv2 is preferred for modern implementations.
D. Enable net-device: The net-device setting is usually disabled in ADVPN deployments because it is used in scenarios where the FortiGate is aware of the underlying network topology, which is not needed in this case.
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
zaidoon
2 days, 10 hours agoSlikings
2 days, 11 hours agof002a32
2 days, 17 hours agof002a32
5 days, 8 hours agoBar_x
6 months, 3 weeks agofor3nsic
9 months, 3 weeks agoalejandrofern43
11 months, 1 week agogogudindeal
11 months, 1 week agoIBB90704
11 months, 3 weeks ago