ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 24 - FCP_WCS_AD-7.4 discussion

Report
Export

Refer to the exhibit.

What occurs during a failover for an active-passive (A-P) cluster that is deployed in two different availability zones? (Choose two.)

A.
The cluster elastic IP address (EIP) is moved from Port1 of FGT-1 to Port1 of FGT-2.
Answers
A.
The cluster elastic IP address (EIP) is moved from Port1 of FGT-1 to Port1 of FGT-2.
B.
The secondary IP address of Port2 of FGT-1 is moved to Port2 of FGT-2.
Answers
B.
The secondary IP address of Port2 of FGT-1 is moved to Port2 of FGT-2.
C.
The default static route in the Private-AZ1 subnet route table is modified to forward all traffic to Port2 of FGT2.
Answers
C.
The default static route in the Private-AZ1 subnet route table is modified to forward all traffic to Port2 of FGT2.
D.
An additional route is added to the route table of the HA Sync AZ2 subnet to forward all traffic to the Internet GW.
Answers
D.
An additional route is added to the route table of the HA Sync AZ2 subnet to forward all traffic to the Internet GW.
Suggested answer: A, B

Explanation:

Cluster Elastic IP Address (EIP) Movement:

During a failover in an active-passive (A-P) cluster, the Elastic IP (EIP) associated with the active FortiGate instance (FGT-1) needs to be moved to the passive instance (FGT-2), which becomes the new active instance. This ensures that the traffic directed to the EIP is now handled by FGT-2 (Option A).

Secondary IP Address Movement:

The secondary IP address on Port2 of the current active instance (FGT-1) is moved to the same port on the new active instance (FGT-2). This step is crucial to ensure seamless network traffic redirection and connectivity for the services relying on that IP address (Option B).

Other Options Analysis:

Option C is incorrect because the static route modification mentioned is not directly related to the failover process described.

Option D is incorrect because no additional route needs to be added to the HA Sync AZ2 subnet route table to forward traffic to the Internet Gateway during a failover.

FortiGate HA Configuration Guide: FortiGate HA

AWS Elastic IP Documentation: Elastic IP

asked 18/09/2024
Calvin Bolico
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first