Pass the Fortinet Network Security FCP_FGT_AD-7.6 Questions and answers with CertsForce

Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions
Questions # 11:

When configuring a FortiGate in a multi-WAN setup, why would an administrator enable session preservation on an interface?

Options:

A.

To allow the FortiGate to dynamically change interfaces for all active sessions when a WAN link fails


B.

To make sure all sessions without source NAT enabled always use the primary WAN link


C.

To improve security by forcing users to authenticate again when the WAN link changes


D.

To ensure that existing SSL VPN connections remain on the same interface even if route changes occur


Expert Solution
Questions # 12:

Which two statements about equal-cost multi-path (ECMP) configuration on FortiGate are true? (Choose two.)

Options:

A.

If SD-WAN is disabled, you can configure the parameter v4-ecmp-mode to volume-based.


B.

If SD-WAN is enabled, you can configure routes with unequal distance and priority values to be part of ECMP.


C.

If SD-WAN is disabled, you configure the load balancing algorithm in config system settings.


D.

If SD-WAN is enabled, you control the load balancing algorithm with the parameter load-balance-mode.


Expert Solution
Questions # 13:

Refer to the exhibits.

Question # 13

Based on the current HA status, an administrator updates theoverrideandpriorityparameters on HQ-NGFW-1 and HQ-NGFW-2 as shown in the exhibit.

What would be the expected outcome in the HA cluster?

Options:

A.

HQ-NGFW-1 will synchronize the override disable setting with HQ-NGFW-2.


B.

HQ-NGFW-2 will take over as the primary because it has the override enable setting and higher priority than HQ-NGFW-1.


C.

HQ-NGFW-1 will remain the primary because HQ-NGFW-2 has lower priority.


D.

The HA cluster will become out of sync because the override setting must match on all HA members.


Expert Solution
Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions