View all questions & answers for the FCSS – SD-WAN 7.6 Architect Exam Materials exam
Question 24 Discussion
Comments
Selected Answers: B
it is B as the num_pass is 2 for both hub1-vpn1 and hub1-vpn2
Selected Answers: D
Selected Answers: B
Rule Matching: The traffic matches SD-WAN service rule ID 3 ("Corp").
Source: LAN-net (10.0.1.0-10.0.1.255) includes the client 10.0.1.101.
Destination: Corp-net (10.0.0.0-10.255.255.255) includes the server 10.0.0.125.
Strategy and Load Balancing: * The rule is configured with set mode sla and set load-balance enable.
This combination makes the rule function as a Lowest Cost (SLA) strategy with load balancing active among members that meet the SLA.
SLA Requirements: The rule requires members to meet two health checks: HUB1_HC and HUB1_HTTP.
The setting set minimum-sla-meet-members 2 ensures that for the rule to be active, at least two members must be compliant.
Member Status (Proute List): The diagnose firewall proute list output shows the real-time status of the members for Service ID 3:
HUB1-VPN1 (oif=19): num_pass=2 (Meets both SLAs).
HUB1-VPN2 (oif=20): num_pass=2 (Meets both SLAs).
HUB1-VPN3 (oif=21): num_pass=1 (Meets only one SLA).
Traffic Steering: Because load-balance is enabled, FortiGate distributes traffic across all members that meet the SLA requirements. Since HUB1-VPN1 and HUB1-VPN2 both pass both SLAs (num_pass=2), they are the only active members used for steering. HUB1-VPN3 is excluded because it failed one of the required health checks.
Refer to the exhibits. You collected the output shown in the exhibits and want to know which interface TCP traffic will flow through from the user device 10.0.1.101 to the corporate file server 10.0.0.125. All SD-WAN links are stable. Which interface will use FortiGate to steer the traffic? (Choose one answer)
Brave-Dump Clients Votes