exam questions

Exam NSE8 All Questions

View all questions & answers for the NSE8 exam

Exam NSE8 topic 1 question 13 discussion

Actual exam question from Fortinet's NSE8
Question #: 13
Topic #: 1
[All NSE8 Questions]

There is an interface-mode IPsec tunnel configured between FortiGate1 and FortiGate2. You want to run OSPF over the IPsec tunnel. On both FortiGates. the
IPsec tunnel is based on physical interface port1. Port1 has the default MTU setting on both FortiGate units.
Which statement is true about this scenario?

  • A. A multicast firewall policy must be added on FortiGate1 and FortiGate2 to allow protocol 89.
  • B. The MTU must be set manually in the OSPF interface configuration.
  • C. The MTU must be set manually on the IPsec interface.
  • D. An IP address must be assigned to the IPsec interface on FortiGate1 and FortiGate2.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️
If MTU doesnt match then the neighbour ship gets stuck in exchange state.

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
brainlet
3 years, 4 months ago
D. You need IP addresses configured on both interfaces to get OSPF running. OSPF interface MTU will match (default settings).
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago