Which configuration change is required if the responder FortiGate uses a dynamic routing protocol to exchange routes over IPsec?
Refer to the exhibit.
Which configuration change is required if the responder FortiGate uses a dynamic routing protocol to exchange routes over IPsec?
A . type must be set to static.
B . mode-cfg must be enabled.
C . exchange-interface-ip must be enabled.
D . add-route must be disabled.
Answer: D
Explanation:
for using "non ike" routes (for example BGP/static and so on) you must do disable the add-route that
inject automatically kernel route based on p2 selectors from the remote site from the SD-WAN_7.2_Study_Guide page 236
Latest NSE7_SDW-7.2 Dumps Valid Version with 70 Q&As
Latest And Valid Q&A | Instant Download | Once Fail, Full Refund
Subscribe
Login
0 Comments
Inline Feedbacks
View all comments