exam questions

Exam FCP_WCS_AD-7.4 All Questions

View all questions & answers for the FCP_WCS_AD-7.4 exam

Exam FCP_WCS_AD-7.4 topic 1 question 25 discussion

Actual exam question from Fortinet's FCP_WCS_AD-7.4
Question #: 25
Topic #: 1
[All FCP_WCS_AD-7.4 Questions]

Refer to the exhibit.

Which two statements are true about inbound traffic based on the IGW ingress route table and GWLB deployment shown in the exhibit? (Choose two.)

  • A. GWLB forwards traffic to FortiGate without encapsulation in its dedicated subnet.
  • B. Inbound traffic is directed to the GWLB through a GWLB endpoint.
  • C. Inbound traffic is directed to the application subnet through a GWLB endpoint.
  • D. GWLB encapsulates traffic with the GENEVE protocol and sends it to FortiGate.
Show Suggested Answer Hide Answer
Suggested Answer: BD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
myrmidon3
2 months, 4 weeks ago
Selected Answer: BD
B. Inbound traffic is directed to the GWLB through a GWLB endpoint. The ingress route table shows that traffic is directed to the GWLB endpoint (GWLBe), which handles traffic processing before forwarding it to the next hop. D. GWLB encapsulates traffic with the GENEVE protocol and sends it to FortiGate. The diagram shows that the Gateway Load Balancer (GWLB) uses the GENEVE protocol to encapsulate traffic before forwarding it to FortiGate for inspection. The other options are incorrect: A: GWLB encapsulates traffic before forwarding it to FortiGate, so it is not forwarded without encapsulation. C: Traffic is not directly sent to the application subnet via the GWLB endpoint. It first goes through the GWLB and FortiGate for inspection before reaching the application subnet.
upvoted 1 times
...
the_giant
5 months, 2 weeks ago
Selected Answer: BD
B,D are correct Traffic Direction through GWLB Endpoint: The ingress route table directs inbound traffic to the GWLB through a GWLB endpoint (GWLBe). This endpoint is responsible for directing traffic to the Gateway Load Balancer for further processing (Option B). GENEVE Encapsulation: The GWLB encapsulates the inbound traffic using the GENEVE protocol. This encapsulated traffic is then sent to FortiGate instances for security inspection. The use of GENEVE ensures that the original traffic context is preserved and can be analyzed by FortiGate (Option D). Other Options Analysis: Option A is incorrect because GWLB does not forward traffic without encapsulation in its dedicated subnet. Option C is incorrect as the inbound traffic is directed to the GWLB endpoint first, not directly to the application subnet.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago