nerdexam
Fortinet

FCSS_SDW_AR-7.4 · Question #32

Refer to the exhibit. Which SD-WAN rule and interface uses FortiGate to steer the traffic from the LAN subnet 10.0.1.0/24 to the corporate server 10.2.5.254?

The correct answer is B. SD-WAN service rule 3 and interface HUB1-VPN3. First off, the traffic matches the SD-WAN rule with service ID 3. We can see that there is at least one valid route in the FIB, so the SD-WAN rule will be selected. Next, we see HUB1-VPN2 and HUB1-VPN3 have the same slamap value of 0x1 - therefore, they are equally valid…

SD-WAN Business Application Policies

Question

Refer to the exhibit. Which SD-WAN rule and interface uses FortiGate to steer the traffic from the LAN subnet 10.0.1.0/24 to the corporate server 10.2.5.254?

Exhibit

FCSS_SDW_AR-7.4 question #32 exhibit

Options

  • ASD-WAN service rule 3 and interface HUB1-VPN2.
  • BSD-WAN service rule 3 and interface HUB1-VPN3.
  • CSD-WAN service rule 4 and port1 or port2.
  • DSD-WAN service rule 4 and interface port2.

How the community answered

(53 responses)
  • A
    13% (7)
  • B
    75% (40)
  • C
    8% (4)
  • D
    4% (2)

Explanation

First off, the traffic matches the SD-WAN rule with service ID 3. We can see that there is at least one valid route in the FIB, so the SD-WAN rule will be selected. Next, we see HUB1-VPN2 and HUB1-VPN3 have the same slamap value of 0x1 - therefore, they are equally valid members to choose from, and a tiebreak occurs (since there is no load balancing configured). Looking at the routes, HUB1-VPN3 has a more SPECIFIC route (i.e. better route) and therefore, it wins the tiebreak.

Topics

#SD-WAN rules#traffic steering#hub VPN#corporate route

Community Discussion

No community discussion yet for this question.

Full FCSS_SDW_AR-7.4 Practice