exam questions

Exam FCP_WCS_AD-7.4 All Questions

View all questions & answers for the FCP_WCS_AD-7.4 exam

Exam FCP_WCS_AD-7.4 topic 1 question 5 discussion

Actual exam question from Fortinet's FCP_WCS_AD-7.4
Question #: 5
Topic #: 1
[All FCP_WCS_AD-7.4 Questions]

A customer has implemented GWLB between the partner and application VPCs. FortiGate appliances are deployed in the partner VPC with multiple AZs to inspect traffic transparently.
Which two things will happen to application traffic based on the GWLB deployment? (Choose two.)

  • A. Inbound and outbound traffic will go to multiple devices, which will perform load balancing.
  • B. Inbound and outbound traffic will go to the same device, which will perform stateful processing.
  • C. The content of the original traffic exchanged between the GWLB and FortiGate will be preserved.
  • D. The original traffic exchanged between the GWLB and FortiGate will be hashed for data integrity.
Show Suggested Answer Hide Answer
Suggested Answer: BC 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
jlmadvig
Highly Voted 6 months, 1 week ago
Selected Answer: BC
GWLB ensures that traffic flows are sent to the same appliance to maintain stateful processing. This is critical for the functioning of stateful firewalls like FortiGate, which need to keep track of the state of connections to inspect traffic effectively. GLB and the virtual appliances exchange application traffic with other using GENEVE, which allows GWLB to preserve the content of the original traffic.
upvoted 8 times
...
havokdu
Most Recent 4 weeks ago
Selected Answer: BC
Study guide pages 147 and 150.
upvoted 1 times
havokdu
4 weeks ago
Options A and D are incorrect: A: Suggesting that inbound and outbound traffic will go to multiple devices would break stateful processing. Instead, GWLB ensures that both directions of a flow end up at the same appliance. D: GWLB does not hash the original traffic content for data integrity. It uses flow-based hashing to ensure symmetrical routing, but the packet content itself remains intact and is not hashed for integrity checks in this manner.
upvoted 1 times
...
...
myrmidon3
2 months, 3 weeks ago
Selected Answer: BC
Inbound and outbound traffic will go to the same device, which will perform stateful processing: The Gateway Load Balancer (GWLB) in AWS ensures that traffic is forwarded to the same FortiGate device for stateful inspection. This ensures that the session remains intact during the processing​. The content of the original traffic exchanged between the GWLB and FortiGate will be preserved: The GWLB uses the Generic Network Virtualization Encapsulation (GENEVE) protocol, which preserves the original traffic content during its transmission to and from the FortiGate device for inspection​. These references confirm that GWLB ensures stateful traffic processing and preserves the content of the original traffic when exchanged between the GWLB and FortiGate appliances.
upvoted 2 times
...
the_giant
5 months, 2 weeks ago
Selected Answer: BC
B,C should be correct
upvoted 4 times
...
jhoncena
6 months, 3 weeks ago
Answer should be Answer : A, B
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago