Fortinet FCSS_SDW_AR-7.4 - FCSS - SD-WAN 7.4 Architect Exam

Question #6 (Topic: Exam A)
Refer to the exhibit.

Which statement best describe the role of the ADVPN device in handling traffic?
A. This is a hub that has received a query from a spoke and has forwarded it to another spoke. B. This is a hub in a dual-region topology. The remote hub tunnel ID is 10.0.2.101. C. This is a spoke that has received a shortcut query from another spoke and has forwarded the response to its hub. D. This is a spoke. The kernel received a shortcut request and forwards the query to another spoke.
Answer: A
Question #7 (Topic: Exam A)
Refer to the exhibit.

The administrator analyzed the traffic between a branch FortiGate and the server located in the data center, and noticed the behavior shown in the diagram. When the LAN clients located behind FGT1 establish a session to a server behind DC-1, the administrator observes that, on DC-1, the reply traffic is routed over T2, even though T1 is the preferred member in the matching SD-WAN rule.
What can the administrator do to instruct DC-1 to route the reply traffic through the member with the best performance?
A. Enable auxiliary-session under config system settings. B. Enable snat-route-change under config system global. C. Enable reply-session under config system sdwan. D. FortiGate route lookup for reply traffic only considers routes over the original ingress interface.
Answer: C
Question #8 (Topic: Exam A)
You are planning a large SD-WAN deployment with approximately 1000 spokes and want to allow ADVPN between the spokes. Some remote sites use FortiSASE to connect to the company’s SD-WAN hub.
Which overlay routing configuration should you use?
A. BGP on loopback with IPsec phase2 selectors for ADVPN shortcut routing. B. BGP per overlay with dynamic BGP for ADVPN shortcut routing. C. BGP per overlay with BGP next-hop convergence for ADVPN shortcut routing. D. BGP on loopback with dynamic BGP for ADVPN shortcut routing.
Answer: D
Question #9 (Topic: Exam A)
Refer to the exhibit that shows event logs on FortiGate.

Based on the output shown in the exhibit, what can you say about the tunnels on this device?
A. The master tunnel HUB2-VPN3 cannot accept ADVPN shortcuts. B. There is one shortcut tunnel built from master tunnel VPV4. C. The device steers voice traffic through the VPN tunnel HUB1-VPN3. D. The VPN tunnel HUB1-VPN1_0 is a shortcut tunnel.
Answer: D
Question #10 (Topic: Exam A)
Which three characteristics apply to provisioning templates available on FortiManager? (Choose three.)
A. A template group can include a system template and an SD-WAN template. B. A CLI template group can contain CLI templates of both types. C. Each template group can contain up to three IPsec tunnel templates. D. A CLI template can be of type CLI script or Peri script. E. CLI templates are applied in order, from top to bottom.
Answer: ABE
Download Exam
Page: 2 / 14
Total 68 questions