A. ibgp-enfoce-multihop
B. ebgp-enforce-multihop
C. update-source
D. recursive-next-hop
A. You can disable the NP for each firewall policy using the command np-acceleration st to loose.
B. The NP provides IPS signature matching
C. The NP checks the session key or IPSec SA
D. For TCP traffic FortiGate CPU offloads the first packets of SYN/ACK and ACK of the three-way handshake to NP
A. The hub adds routes based on IKE negotiations.
B. You must configure phase 2 quick mode selectors to 0.0.0.0 0.0.0.0.
C. You must disable add-route in the hub.
D. AllFortiGate devices must be in the same autonomous system (AS).
A. External BGP (EBGP) exchanges routing information.
B. The BGP session with peer 10. 127. 0. 75 is established.
C. The neighbors displayed are linked to a local router with the neighbor-range set to a value of 4.
D. The router 100. 64. 3. 1 has the parameter bfd set to enable.
A. FortiGate creates separate virtual interfaces for each dial up client.
B. The VPN should use the dynamic routing protocol to exchange routing information Through the tunnels.
C. Dead peer detection s disabled.
D. The routing table shows a single IPSec virtual interface.
A. The IKE version is 2.
B. Dead peer detection is set to enable.
C. Forward error correction in phase 2 is set to enable.
D. Both IPsec SAs are loaded on the kernel.