nerdexam
Fortinet

NSE7_CDS_AR-7.6 · Question #49

Your organization has several FortiGate VMs deployed in Azure. You need to implement a solution with Azure native tools that allows you to determine whether packets are being permitted or blocked by…

The correct answer is C. Use IP flow verify for each of the VMs. Azure IP flow verify is part of Network Watcher and lets you check if traffic is allowed or denied for a specific VM by analyzing its effective security rules and routing. This provides visibility into whether packets are being permitted or blocked for the FortiGate VMs.

Cloud Security Operations and Management

Question

Your organization has several FortiGate VMs deployed in Azure. You need to implement a solution with Azure native tools that allows you to determine whether packets are being permitted or blocked by the FortiGate VMs. Which solution can you use to meet these requirements?

Options

  • AInsert the VM traffic logs in Azure Sentinel.
  • BInstall the Azure Monitor agent in all VMs.
  • CUse IP flow verify for each of the VMs.
  • DConfigure Azure Advisor to analyze the network traffic.

How the community answered

(33 responses)
  • A
    3% (1)
  • B
    9% (3)
  • C
    82% (27)
  • D
    6% (2)

Explanation

Azure IP flow verify is part of Network Watcher and lets you check if traffic is allowed or denied for a specific VM by analyzing its effective security rules and routing. This provides visibility into whether packets are being permitted or blocked for the FortiGate VMs.

Topics

#Azure#IP flow verify#FortiGate VM#network diagnostics

Community Discussion

No community discussion yet for this question.

Full NSE7_CDS_AR-7.6 Practice