Fortinet
NSE8_812 · Question #48
SD-WAN is configured on a FortiGate. You notice that when one of the internet links has high latency the time to resolve names using DNS from FortiGate is very high. You must ensure that the…
The correct answer is B. Configure an SD-WAN rule to the DNS server and use the FortiGate interface IPs in the source address. See the full explanation below for the reasoning.
Question
SD-WAN is configured on a FortiGate. You notice that when one of the internet links has high latency the time to resolve names using DNS from FortiGate is very high. You must ensure that the FortiGate DNS resolution times are as low as possible with the least amount of work. What should you configure?
Options
- AConfigure local out traffic to use the outgoing interface based on SD-WAN rules with a manual define IP associated to a loopback interface and configure an SD-WAN rule from the loopback to the DNS server.
- BConfigure an SD-WAN rule to the DNS server and use the FortiGate interface IPs in the source address.
How the community answered
(67 responses)- A18% (12)
- B82% (55)
Community Discussion
No community discussion yet for this question.