View all questions & answers for the FCSS - Enterprise Firewall 7.4 Administrator Exam Materials exam


Question 21 Discussion

Refer to the exhibit, which shows a command output. FortiGate_A and FortiGate_B are members of an FGSP cluster in an enterprise network. While testing the cluster using the ping command, the administrator monitors packet loss and found that the session output on FortiGate_B is as shown in the exhibit. What could be the cause of this output on FortiGate_B? (Choose one answer)

  • A. The session synchronization is encrypted.
  • B. session-pickup-connectionless is set to disable on FortiGate_B.
  • C. FortiGate_B is configured in passive mode.
  • D. FortiGate_A and FortiGate_B have the same standalone-group-id value.
Correct Answer: B

Brave-Dump Clients Votes

B 100%

Comments



Brave-Dumps Admin 2025-04-27 13:07:51

Selected Answers: B


B is correct
EFW 7.4 study guide page 106 confirms that,

By default, FGSP synchronizes all IPv4 and IPv6 TCP sessions, and IPsec tunnels. However, you can add other
sessions to synchronize between peer FortiGate devices.
The table on this slide shows the CLI commands that you can use to enable additional types of sessions to be
synchronized.

Session Types | Syntax
To sync connectionless sessions (UDP and ICMP) | config system haset session-pickup enableset session-pickup-connectionless enable
To sync expectation (EXT) sessions ( SIP أو FTP) | set session-pickup-expectation enable
To sync NAT sessions | set session-pickup-nat enable