nerdexam
Fortinet

NSE6_SDW_AD-7.6 · Question #32

Refer to the exhibit. Which SD-WAN rule and interface uses FortiGate to steer the traffic from the LAN subnet 10.0.1.0/24 to the corporate server 10.2.5.254?

The correct answer is B. SD-WAN service rule 3 and interface HUB1-VPN3. First off, the traffic matches the SD-WAN rule with service ID 3. We can see that there is at least one valid route in the FIB, so the SD-WAN rule will be selected. Next, we see HUB1-VPN2 and HUB1-VPN3 have the same slamap value of 0x1 - therefore, they are equally valid…

SD-WAN Monitoring and Troubleshooting

Question

Refer to the exhibit. Which SD-WAN rule and interface uses FortiGate to steer the traffic from the LAN subnet 10.0.1.0/24 to the corporate server 10.2.5.254?

Exhibit

NSE6_SDW_AD-7.6 question #32 exhibit

Options

  • ASD-WAN service rule 3 and interface HUB1-VPN2.
  • BSD-WAN service rule 3 and interface HUB1-VPN3.
  • CSD-WAN service rule 4 and port1 or port2.
  • DSD-WAN service rule 4 and interface port2.

How the community answered

(16 responses)
  • A
    13% (2)
  • B
    56% (9)
  • C
    6% (1)
  • D
    25% (4)

Explanation

First off, the traffic matches the SD-WAN rule with service ID 3. We can see that there is at least one valid route in the FIB, so the SD-WAN rule will be selected. Next, we see HUB1-VPN2 and HUB1-VPN3 have the same slamap value of 0x1 - therefore, they are equally valid members to choose from, and a tiebreak occurs (since there is no load balancing configured). Looking at the routes, HUB1-VPN3 has a more SPECIFIC route (i.e. better route) and therefore, it wins the tiebreak.

Topics

#SD-WAN service rule#interface selection#traffic steering#diagnose output analysis

Community Discussion

No community discussion yet for this question.

Full NSE6_SDW_AD-7.6 Practice