Refer to the exhibit showing an SD-WAN configuration.

According to the exhibit, if an internal user pings 10.1.100.2 and 10.1.100.22 from subnet 172.16.205.0/24, which outgoing interfaces will be used?
Bmust be set to enable mode-cfg, which is required for injecting IKE routes on the ADVPN shortcut tunnels.
Dmust be set to enable add-route, which is the command that actually injects the IKE routes.
Emust be set to enable mode-cfg-allow-client-selector, which allows custom phase 2 selectors to be configured.
The other options are incorrect. Option A is incorrect because net-device disable is not required for injecting IKE routes on the ADVPN shortcut tunnels. Option C is incorrect because IKE version 1 is not supported for ADVPN.
References:
Phase 2 selectors and ADVPN shortcut tunnels | FortiGate / FortiOS 7.2.0
Configuring SD-WAN/ADVPN with FortiGate | FortiGate / FortiOS 7.2.0
Alishia
3 months agoMozell
3 months agoJess
3 months agoCarli
4 months agoHoa
4 months agoCortney
4 months agoThurman
4 months agoYolande
4 months agoMaile
5 months agoKenneth
5 months agoPhuong
5 months agoViki
5 months agoAlexis
5 months agoWenona
5 months agoRima
9 months agoNa
10 months agoLeatha
8 months agoJoanna
8 months agoFiliberto
9 months agoRodolfo
10 months agoLauna
10 months agoCeola
8 months agoEric
9 months agoJenelle
9 months agoCharlene
10 months agoNoe
8 months agoLisha
8 months agoMarnie
9 months agoYuette
10 months agoKatina
11 months agoFrancine
11 months ago