Fortinet FCP_WCS_AD-7.4 - FCP - AWS Cloud Security 7.4 Administrator Exam

Page:    1 / 7   
Total 35 questions

Refer to the exhibit.

An organization deployed the application servers in the AWS VPC that connects to the corporate data center using Transit Gateway Connect. Demand for the applications has grown and the connection requires more bandwidth.
What is required to achieve higher bandwidth?

  • A. Use routable public IP addresses instead of private IP addresses for connectivity.
  • B. You cannot increase bandwidth the connection has a fixed limit.
  • C. No configuration change is required because GRE tunnels are scaled to provide higher bandwidth.
  • D. You add a Transit VPC between the organization's VPCs.


Answer : C

You want to deploy the Fortinet HA CloudFormation template to stage and bootstrap the FortiGate configuration in the same region in which you created your VPC, which is Ohio US-East-2.
Based on this information, which statement is correct?

  • A. You create an S3 bucket to stage and bootstrap FortiGate with an FGCP unicast configuration. The S3 bucket can be hosted in any region.
  • B. The Fortinet HA cloud formation template automatically creates an S3 bucket.
  • C. You create an S3 bucket to stage and bootstrap FortiGate with an FGCP unicast configuration. The S3 bucket needs to be hosted in the Ohio US-East-2 region.
  • D. You create a DynamoDB to stage and bootstrap FortiGate with an FGCP unicast configuration. It needs to be hosted in the Ohio US-East-2 region.


Answer : C

An organization has the requirement to connect a data VPC to the on-premises infrastructure of a branch office in a hybrid cloud environment. The connectivity needs the higher bandwidth but the organization does not want to use multiple connections between sites.
Which AWS solution meets the requirement?

  • A. Transit VPC with IPSec
  • B. Internet Gateway
  • C. Transit Gateway multicast
  • D. Transit Gateway Connect


Answer : D

Refer to the exhibit.

Traffic is initiated from the EC2 instance and is destined for the internet.
Which traffic flow is correct?

  • A. EC2 instance > NAT GW > IGW > internet
  • B. There is no route to the internet in the Private Route Table. The traffic does not reach the internet.
  • C. EC2 instance > GWLBe > NAT GW > IGW > internet
  • D. EC2 instance > GWLBe > internet


Answer : A

A customer has implemented GWLB between the partner and application VPCs. FortiGate appliances are deployed in the partner VPC with multiple AZs to inspect traffic transparently.
Which two things will happen to application traffic based on the GWLB deployment? (Choose two.)

  • A. Inbound and outbound traffic will go to multiple devices, which will perform load balancing.
  • B. Inbound and outbound traffic will go to the same device, which will perform stateful processing.
  • C. The content of the original traffic exchanged between the GWLB and FortiGate will be preserved.
  • D. The original traffic exchanged between the GWLB and FortiGate will be hashed for data integrity.


Answer : AC

Page:    1 / 7   
Total 35 questions