Your administrator instructed you to deploy an Azure vWAN solution to create a connection between the main company site and branch sites to the other company VNETs.
What are the two best connection solutions available between your company headquarters, branch sites, and the Azure vWAN hub? (Choose two.)
The two best connection solutions available between your company headquarters, branch sites, and the Azure vWAN hub are
A . ExpressRoute and E. VPN Gateway.
The other options are incorrect because:
An L2TP connection is not a supported connectivity option for Azure vWAN. L2TP is a protocol that creates a tunnel between two endpoints at the data link layer (Layer 2) of the OSI model. L2TP is not compatible with the Azure vWAN hub.
What are two main features in Amazon Web Services (AWS) network access control lists (ACLs)? (Choose two.)
The other options are incorrect because:
Refer to the exhibit.
The exhibit shows an active-passive high availability FortiGate pair with external and internal Azure load balancers. There is no SDN connector used in this solution
Which configuration should the administrator implement?
Based on the provided exhibit showing an active-passive FortiGate High Availability (HA) pair with external and internal Azure load balancers and without the use of an SDN connector, the administrator should implement a Probe IP address with two static routes (Option B).
Probe IP Address: Azure load balancers use a health probe to determine the health of the instances in the backend pool. The health probe ensures that the load balancer only directs traffic to the active (primary) FortiGate in an HA pair.
Two Static Routes: Given that this is an active-passive setup, static routing should be used to ensure deterministic traffic flow. Two static routes would be configured to ensure that traffic can flow to the active unit and be correctly routed to the protected subnets in failover scenarios.
Refer to the exhibit.
What would be the impact of confirming to delete all the resources in Terraform?
Confirming to delete all the resources in Terraform will have the following impact:
Refer to the exhibit
A customer has deployed an environment in Amazon Web Services (AWS) and is now trying to send outbound traffic from the Linux1 and Linux2 instances to the internet through the security VPC (virtual private cloud). The FortiGate policies are configured to allow all outbound traffic; however, the traffic is not reaching the FortiGate internal interface. Assume there are no issues with the Transit Gateway (TGW) configuration
Which two settings must the customer add to correct the issue? (Choose two.)
The correct answer is B and C. Both landing subnets in the spoke VPCs must have a 0.0.0.0/0 traffic route to the TGW. Both landing subnets in the security VPC must have a 0.0.0.0/0 traffic route to the FortiGate port2.
According to the AWS documentation for Transit Gateway, a transit gateway is a network transit hub that connects VPCs and on-premises networks. To send outbound traffic from the Linux instances to the internet through the security VPC, you need to do the following steps:
In the main subnet routing table in the spoke VPCs, add a new route with destination 0.0.0.0/0, next hop TGW. This route directs all traffic from the Linux instances to the TGW, which can then forward it to the appropriate destination based on the TGW route table.
In the main subnet routing table in the security VPC, add a new route with destination 0.0.0.0/0, next hop FortiGate port2. This route directs all traffic from the TGW to the FortiGate internal interface, where it can be inspected and allowed by the FortiGate policies.
The other options are incorrect because:
Adding a 0.0.0.0/0 traffic route to the Internet Gateway (IGW) in the spoke VPCs is not correct, as this would bypass the TGW and the security VPC and send all traffic directly to the internet.
Adding a 0.0.0.0/0 traffic route to the TGW in all the VPCs is not necessary, as only the spoke VPCs need to send traffic to the TGW. The security VPC needs to send traffic to the FortiGate port2.
Shelton
30 days agoIesha
1 months agoVonda
1 months agoTracie
2 months agoRegenia
2 months agoMa
2 months agoBethanie
3 months agoFallon
3 months agoKeneth
3 months agoArleen
3 months agoWilliam
4 months agoBulah
4 months agoKiley
4 months agoStephania
4 months agoKatie
4 months agoEleonora
5 months agoVicky
5 months agoGeorgene
5 months agoTamekia
5 months agoFranklyn
5 months agoElli
6 months agoTina
6 months agoCaprice
6 months agoMalcom
6 months agoDylan
7 months agoYuki
7 months agoRoxanne
7 months agoFrancesco
7 months agoSage
7 months agoFletcher
7 months agoTanja
8 months agoFrankie
9 months agoCeola
9 months agoAlease
10 months agoNoel
10 months agoDyan
10 months agoDevorah
11 months agoVictor
11 months agoSang
12 months ago