Question 46

Refer to the exhibits.
Exhibit A -

Exhibit B -

Exhibit A shows a site-to-site topology between two FortiGate devices: branch1_fgt and dc1_fgt. Exhibit B shows the system global and system settings configuration on dc1_fgt.
When branch1_client establishes a connection to dc1_host, the administrator observes that, on dc1_fgt, the reply traffic is routed over T_INET_0_0, even though T_INET_1_0 is the preferred member in the matching SD-WAN rule.
Based on the information shown in the exhibits, what configuration change must be made on dc1_fgt so dc1_fgt routes the reply traffic over T_INET_1_0?
  • Question 47

    What are two benefits of using forward error correction (FEC) in IPsec VPNs? (Choose two.)
  • Question 48

    Refer to the exhibits.
    Exhibit A

    Exhibit B

    Exhibit A shows the SD-WAN performance SLA configuration, the SD-WAN rule configuration, and the application IDs of Facebook and YouTube. Exhibit B shows the firewall policy configuration and the underlay zone status.
    Based on the exhibits, which two statements are correct about the health and performance of port1 and port2? (Choose two.)
  • Question 49

    Refer to the exhibits.
    Exhibit A

    Exhibit B

    Exhibit A shows the source NAT (SNAT) global setting and exhibit B shows the routing table on FortiGate.
    Based on the exhibits, which two actions does FortiGate perform on existing sessions established over port2, if the administrator increases the static route priority on port2 to 20? (Choose two.)
  • Question 50


    Two hub-and-spoke groups are connected through a site-to-site IPsec VPN between Hub 1 and Hub 2. The administrator configured ADVPN on both hub-and-spoke groups.
    Which two outcomes are expected if a user in Toronto sends traffic to London? (Choose two.)