NSE 4 – FortiGate 7.2 — Question 12

A network administrator is configuring a new IPsec VPN tunnel on FortiGate. The remote peer IP address is dynamic. In addition, the remote peer does not support a dynamic DNS update service.
Which type of remote gateway should the administrator configure on FortiGate for the new IPsec VPN tunnel to work?

Answer options

Correct answer: B

Explanation

The correct answer is B, 'Dialup user', because it allows for dynamic IP addresses without needing dynamic DNS. The other options, such as 'Pre-shared key' and 'Static IP address', do not accommodate the dynamic nature of the remote peer's IP address, and 'Dynamic DNS' is not a viable option since the remote peer does not support it.