exam questions

Exam NSE7_SDW-7.2 All Questions

View all questions & answers for the NSE7_SDW-7.2 exam

Exam NSE7_SDW-7.2 topic 1 question 10 discussion

Actual exam question from Fortinet's NSE7_SDW-7.2
Question #: 10
Topic #: 1
[All NSE7_SDW-7.2 Questions]

Refer to the exhibits.
Exhibit A.

Exhibit B.

An administrator is testing application steering in SD-WAN. Before generating test traffic, the administrator collected the information shown in exhibit A.
After generating GoToMeeting test traffic, the administrator examined the respective traffic log on FortiAnalyzer, which is shown in exhibit B. The administrator noticed that the traffic matched the implicit SD-WAN rule, but they expected the traffic to match rule ID 1.
Which two reasons explain why some log messages show that the traffic matched the implicit SD-WAN rule? (Choose two.)

  • A. Port1 and port2 do not have a valid route to the destination.
  • B. The session 3-tuple did not match any of the existing entries in the ISDB application cache.
  • C. Full SSL inspection is not enabled on the matching firewall policy.
  • D. FortiGate did not refresh the routing information on the session after the application was detected.
Show Suggested Answer Hide Answer
Suggested Answer: BD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
lucient
Highly Voted 1 year, 1 month ago
Selected Answer: BD
B: There is no 3-tuple with IP 23.212.248.205 D: Page 156 of the study guide. "By default, SNAT sessions are not flagged as dirty following a routing change that impacts the session". So, the first routing match is the default sd wan rule. After identifying the app, the match is now rule ID 1. However, because there is SNAT to the Internet, the session is not marked as "dirty". It is not re-evaluated and traffic keeps going through port2.
upvoted 5 times
...
Gilmarcio
Most Recent 10 months ago
Study Guide P. 320
upvoted 1 times
...
romartinedg
12 months ago
B, D | Guía 7.2 pág. 192
upvoted 2 times
...
Lomik29
1 year, 2 months ago
D is correct when the session is subject to SNAT (by default, guide page 191)
upvoted 1 times
...
alejandrofern43
1 year, 2 months ago
Selected Answer: BD
B (pag 191 study_guide 7.2) D descarte
upvoted 1 times
...
KavinT
1 year, 2 months ago
Selected Answer: BD
B & D are correct
upvoted 1 times
...
ac89l
1 year, 2 months ago
why D is correct ?
upvoted 1 times
...
IBB90704
1 year, 3 months ago
B y D correctas
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...