ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 34 - FCP_WCS_AD-7.4 discussion

Report
Export

Refer to the exhibit.

What two conclusions can you draw from the FortiGate debug output? (Choose two.)

A.
The dynamic address object is automatically updated if the IP changes.
Answers
A.
The dynamic address object is automatically updated if the IP changes.
B.
The address object AWS Windows Server Lab can be manually changed on FortiGate.
Answers
B.
The address object AWS Windows Server Lab can be manually changed on FortiGate.
C.
The SDN connector is correctly configured and authorized.
Answers
C.
The SDN connector is correctly configured and authorized.
D.
The AWS user account used for software-defined network (SDN) integration must have full administrative rights.
Answers
D.
The AWS user account used for software-defined network (SDN) integration must have full administrative rights.
Suggested answer: A, C

Explanation:

Dynamic Address Object Update:

The debug output shows that the IP address of the AWS Windows Server Lab has been updated automatically, indicating that the dynamic address object feature is working as intended. This allows FortiGate to adapt to changes in the IP addresses of AWS instances dynamically (Option A).

SDN Connector Configuration:

The messages in the debug output confirm that the SDN connector is able to retrieve instance information and update the firewall address objects successfully. This implies that the SDN connector is correctly configured and has the necessary permissions (Option C).

Manual Change and Permissions:

Option B is incorrect because while the address object could theoretically be changed manually, this is not inferred from the debug output.

Option D is incorrect because the debug output does not indicate that the AWS user account must have full administrative rights. The required permissions are typically more scoped to specific actions related to SDN.

FortiGate AWS Integration Guide: FortiGate on AWS

AWS IAM Policies for SDN: AWS IAM Policies

asked 18/09/2024
Vilfride Lutumba
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first