exam questions

Exam NSE7_SDW-7.0 All Questions

View all questions & answers for the NSE7_SDW-7.0 exam

Exam NSE7_SDW-7.0 topic 1 question 27 discussion

Actual exam question from Fortinet's NSE7_SDW-7.0
Question #: 27
Topic #: 1
[All NSE7_SDW-7.0 Questions]

Refer to the exhibits.

Exhibit A -


Exhibit B -

Exhibit A shows a site-to-site topology between two FortiGate devices: branch1_fgt and dc1_fgt. Exhibit B shows the system global and system settings configuration on dc1_fgt.
When branch1_client establishes a connection to dc1_host, the administrator observes that, on dc1_fgt, the reply traffic is routed over T_INET_0_0, even though T_INET_1_0 is the preferred member in the matching SD-WAN rule.
Based on the information shown in the exhibits, what configuration change must be made on dc1_fgt so dc1_fgt routes the reply traffic over T_INET_1_0?

  • A. Enable auxiliary-session under config system settings.
  • B. Disable tсp-session-without-syn under config system settings.
  • C. Enable snat-route-change under config system global.
  • D. Disable allow-subnet-overlap under config system settings.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
charruco
2 months, 1 week ago
A is correct
upvoted 1 times
...
HKITer
3 months ago
Selected Answer: A
https://docs.fortinet.com/document/fortigate/6.2.0/new-features/14295/controlling-return-path-with-auxiliary-session
upvoted 1 times
...
ccaiccie
5 months, 1 week ago
What stdugy guide are you guys referring to?
upvoted 2 times
...
themageofsec
6 months, 1 week ago
Selected Answer: A
A is correct Study Guide 7.0, pages 130 - 131 Study Guide 7.2, pages 156 - 157
upvoted 4 times
...
DeckedFern
7 months, 1 week ago
Selected Answer: A
Correct answer is A. Study guide 7.0 page 130
upvoted 1 times
...
cstevens97
7 months, 2 weeks ago
Selected Answer: A
Controlling return path with auxiliary session When multiple incoming or outgoing interfaces are used in ECMP or for load balancing, changes to routing, incoming, or return traffic interfaces impacts how an existing sessions handles the traffic. Auxiliary sessions can be used to handle these changes to traffic patterns.https://docs.fortinet.com/document/fortigate/7.0.11/administration-guide/14295/controlling-return-path-with-auxiliary-session
upvoted 1 times
...
driguilim
7 months, 2 weeks ago
Sorry, I mean "B" is corretc. Page 139.
upvoted 1 times
...
[Removed]
7 months, 2 weeks ago
Answer A. To be the alternative "B" would have to disable the anti-replay
upvoted 1 times
...
driguilim
7 months, 2 weeks ago
A is correct. Page 139 from study guide.
upvoted 1 times
...
Michael348
7 months, 2 weeks ago
Answer A. as it will allow the replied traffic from dc1_fgt to be on T_INET_1_0 if that is the preferred member on dc1_fgt. traffic can continue to offload the asymmetric traffic because it matches the auxiliary session (reflect session)
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago