NSE 4 – FortiGate 7.0 — Question 27
A network administrator is configuring a new IPsec VPN tunnel on FortiGate. The remote peer IP address is dynamic. In addition, the remote peer does not support a dynamic DNS update service.
What type of remote gateway should the administrator configure on FortiGate for the new IPsec VPN tunnel to work?
Answer options
- A. Dialup User
- B. Static IP Address
- C. Pre-shared Key
- D. Dynamic DNS
Correct answer: A
Explanation
The correct answer is A, Dialup User, because it accommodates dynamic remote peer IP addresses without requiring dynamic DNS. The other options are incorrect as Static IP Address requires a fixed IP, Pre-shared Key is related to authentication, and Dynamic DNS is not supported by the remote peer in this scenario.