nerdexam
Fortinet

NSE7_PBC-7.2 · Question #8

Customer XYZ has an ExpressRoute connection from Microsoft Azure to a data center. They want to secure communication over ExpressRoute, and to install an in-line FortiGate to perform intrusion…

The correct answer is A. Install FortiGate in Azure and build a VPN tunnel to the data center over ExpressRoute D. Configure the gateway subnet as the subnet in the user-defined route table E. Define a default route where the next hop IP is the FortiGate WAN interface. See the full explanation below for the reasoning.

Question

Customer XYZ has an ExpressRoute connection from Microsoft Azure to a data center. They want to secure communication over ExpressRoute, and to install an in-line FortiGate to perform intrusion prevention system (IPS) and antivirus scanning. Which three methods can the customer use to ensure that all traffic from the data center is sent through FortiGate over ExpressRoute? (Choose three.)

Options

  • AInstall FortiGate in Azure and build a VPN tunnel to the data center over ExpressRoute
  • BConfigure a user-defined route table
  • CEnable the redirect option in ExpressRoute to send data center traffic to a user-defined route
  • DConfigure the gateway subnet as the subnet in the user-defined route table
  • EDefine a default route where the next hop IP is the FortiGate WAN interface

How the community answered

(44 responses)
  • A
    77% (34)
  • B
    16% (7)
  • C
    7% (3)

Community Discussion

No community discussion yet for this question.

Full NSE7_PBC-7.2 Practice