View all questions & answers for the FCSS - Enterprise Firewall 7.4 Administrator Exam Materials exam


Question 23 Discussion

Refer to the exhibit, which shows a corporate network and a new remote office network. An administrator must integrate the new remote office network with the corporate enterprise network. What must the administrator do to allow routing between the two networks? (Choose one answer)

  • A. The administrator must configure virtual links on both FortiGate devices.
  • B. The administrator must implement OSPF over IPsec on both FortiGate devices.
  • C. The administrator must implement BGP to inject the new remote office network into the corporate FortiGate device
  • D. The administrator must configure a static route to the subnet 192.168.l.0/24 on the corporate FortiGate device.
Correct Answer: B

Brave-Dump Clients Votes

B 100%

Comments



Brave-Dumps Admin 2025-04-27 13:38:01

Selected Answers: B


In this scenario, the corporate network and the new remote office network need to communicate
over the Internet, which requires a secure and dynamic routing method. Since both networks are
using OSPF (Open Shortest Path First) as the routing protocol, the best approach is to establish an
OSPF over IPsec VPN to ensure secure and dynamic route propagation.

OSPF is already running on the corporate network, and extending it over an IPsec tunnel allows
dynamic route exchange between the corporate FortiGate and the remote office FortiGate. IPsec
provides encryption for traffic over the Internet, ensuring secure communication. OSPF over IPsec
eliminates the need for manual static routes, allowing automatic route updates if networks change.
The new remote office's 192.168.1.0 subnet will be advertised dynamically to the corporate
network without additional configuration.