Which of the following is TRUE concerning numbered VPN Tunnel Interfaces (VTIs)?
A.
VTIs are assigned only local addresses, not remote addresses
B.
VTIs cannot share IP addresses
C.
VTIs are only supported on IPSO
D.
VTIs cannot use an already existing physical-interface IP address
B
D
Numbered VTI
You configure a local and remote IP address for each numbered VPN Tunnel Interface (VTI). For each Security Gateway, you configure a local IP address, a remote address, and the local IP address source for outbound connections to the tunnel. The remote IP address must be the local IP address on the remote peer Security Gateway. More than one VTI can use the same IP Address, but they cannot use an existing physical interface IP address.
Numbered interfaces are supported for SecurePlatform and Gaia operating systems.
Note – Route Based VPN is not supported with IKEv2
Thanks for all the helpful info Sidza.
D. VTIs cannot use an already existing physical-interface IP address
https://sc1.checkpoint.com/documents/R76/CP_R76_VPN_AdminGuide/13824.htm
More than one VTI can use the same IP Address, but they cannot use an existing physical interface IP address.