Câu 8: NSE7_LED-7.0: Fortinet NSE 7 - LAN Edge 7.0
Refer to the exhibit. Examine the IPsec VPN phase 1 configuration shown in the exhibit. An administrator wants to use certificate-based authentication for an IPsec VPN user. Which three configuration changes must you make on FortiGate to perform certificate-based authentication for the IPsec VPN user? (Choose three.)
Nội dung câu hỏi
Refer to the exhibit. Examine the IPsec VPN phase 1 configuration shown in the exhibit. An administrator wants to use certificate-based authentication for an IPsec VPN user. Which three configuration changes must you make on FortiGate to perform certificate-based authentication for the IPsec VPN user? (Choose three.)
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Create a PKI user for the IPsec VPN user, and then configure the IPsec VPN tunnel to accept the PKI user as peer certificate. — đáp án hiện tại
- B. In the Authentication section of the IPsec VPN tunnel, in the Method drop-down list, select Signature, and then select the certificate that FortiGate will use for IPsec VPN. — đáp án hiện tại
- C. In the IKE section of the IPsec VPN tunnel, in the Mode field, select Main (ID protection).
- D. Import the CA that signed the user certificate. — đáp án hiện tại
- E. Enable XAUTH on the IPsec VPN tunnel.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.