Fortinet
NSE8_812 · Question #45
A customer is planning on moving their secondary data center to a cloud-based IaaS. They want to place all the Oracle-based systems on Oracle Cloud, while the other systems will be on Microsoft…
The correct answer is B. Use FortiGate VM for IPSEC over ExpressRoute, as traffic is not encrypted by Azure. C. Branch FortiGate devices must be configured as VPN clients for the branches' internal network to be able to access Oracle services without using public IPs. See the full explanation below for the reasoning.
Question
A customer is planning on moving their secondary data center to a cloud-based IaaS. They want to place all the Oracle-based systems on Oracle Cloud, while the other systems will be on Microsoft Azure with ExpressRoute service to their main data center. They have about 20 branches with no internal services as their only WAN connections. As a network consultant you are asked to design an architecture using Fortinet products with security, redundancy, and performance as a priority. Which two design options are true based on these requirements? (Choose two.)
Options
- ASystems running on Azure will need to go through the main data center to access the services on Oracle Cloud.
- BUse FortiGate VM for IPSEC over ExpressRoute, as traffic is not encrypted by Azure.
- CBranch FortiGate devices must be configured as VPN clients for the branches' internal network to be able to access Oracle services without using public IPs.
- DTwo ExpressRoute services to the main data center are required to implement SD-WAN between a FortiGate VM in Azure and a FortiGate device at the data center edge.
How the community answered
(27 responses)- A7% (2)
- B74% (20)
- D19% (5)
Community Discussion
No community discussion yet for this question.