Podcast
Questions and Answers
Which configuration option should be chosen if the local FortiGate has an external public IP-address?
Which configuration option should be chosen if the local FortiGate has an external public IP-address?
- No NAT (correct)
- Port Address Translation (PAT)
- Dynamic NAT
- Static NAT
What command should be used to configure the tunnel interface on the FortiGate VM in Azure?
What command should be used to configure the tunnel interface on the FortiGate VM in Azure?
- set interface virtual
- set type dynamic (correct)
- set type static
- set interface tunnel
What should be selected on the local FortiGate if it is behind NAT?
What should be selected on the local FortiGate if it is behind NAT?
- This site is not behind NAT
- This site is not using NAT
- This site is behind NAT (correct)
- This site is using NAT
Which widget should be used to establish and verify the VPN connection from the FortiOS GUI?
Which widget should be used to establish and verify the VPN connection from the FortiOS GUI?
What command can be used to diagnose the VPN connection on both FortiGate devices?
What command can be used to diagnose the VPN connection on both FortiGate devices?
Where can the IPsec Monitor widget be accessed to verify if the VPN tunnel is established and that traffic is being sent and received?
Where can the IPsec Monitor widget be accessed to verify if the VPN tunnel is established and that traffic is being sent and received?
Which guide provides full configuration examples for both options described in the lesson?
Which guide provides full configuration examples for both options described in the lesson?
What should be done if the local FortiGate is behind NAT and the VPN tunnel needs to be brought up?
What should be done if the local FortiGate is behind NAT and the VPN tunnel needs to be brought up?
What should be selected if the local FortiGate has an external public IP-address and there is no NAT between sites?
What should be selected if the local FortiGate has an external public IP-address and there is no NAT between sites?
What is the purpose of the 'diagnose vpn ike gateway list' command?
What is the purpose of the 'diagnose vpn ike gateway list' command?
Which command can be used to troubleshoot the creation of the VPN tunnel on the FortiGate end?
Which command can be used to troubleshoot the creation of the VPN tunnel on the FortiGate end?
What is the recommended topology for a site-to-site VPN connection using FortiGate devices on both ends?
What is the recommended topology for a site-to-site VPN connection using FortiGate devices on both ends?
Which of the following is NOT a common issue when troubleshooting the creation of the VPN tunnel?
Which of the following is NOT a common issue when troubleshooting the creation of the VPN tunnel?
What can be used to verify if the VPN tunnel is established and that traffic is being sent and received on the FortiGate end?
What can be used to verify if the VPN tunnel is established and that traffic is being sent and received on the FortiGate end?
What should be adjusted according to the location of the FortiGate device in a site-to-site implementation?
What should be adjusted according to the location of the FortiGate device in a site-to-site implementation?
Which command should be executed on the CLI to see more detailed information about the VPN tunnel on the FortiGate end?
Which command should be executed on the CLI to see more detailed information about the VPN tunnel on the FortiGate end?
What can be used to troubleshoot the Azure side of the VPN connection?
What can be used to troubleshoot the Azure side of the VPN connection?
What is the purpose of using FortiGate H-A clusters in a site-to-site VPN connection?
What is the purpose of using FortiGate H-A clusters in a site-to-site VPN connection?
Which command should be used to enable debug mode on the FortiGate end?
Which command should be used to enable debug mode on the FortiGate end?
What is the purpose of the IPsec Monitor widget in the FortiGate GUI?
What is the purpose of the IPsec Monitor widget in the FortiGate GUI?