Cloud

Cloud

Professional Development

30 Qs

quiz-placeholder

Similar activities

DevOps | Change Management | Incident Management Interview Quiz

DevOps | Change Management | Incident Management Interview Quiz

Professional Development

25 Qs

AWS IAM and S3

AWS IAM and S3

Professional Development

31 Qs

SET #2

SET #2

Professional Development

31 Qs

Herramientas DevSecOps en AWS - Modulo 4

Herramientas DevSecOps en AWS - Modulo 4

Professional Development

30 Qs

Fundamentos de Arquitectura Cloud y DevOps

Fundamentos de Arquitectura Cloud y DevOps

Professional Development

35 Qs

Cloud Computing for SA - Quiz 01

Cloud Computing for SA - Quiz 01

Professional Development

27 Qs

Cloud Computing- UT-2-2

Cloud Computing- UT-2-2

Professional Development

30 Qs

Cloud

Cloud

Assessment

Quiz

Computers

Professional Development

Easy

Created by

Sergio Ortiz

Used 14+ times

FREE Resource

30 questions

Show all answers

1.

MULTIPLE SELECT QUESTION

45 sec • 1 pt

Customer XYZ has an ExpressRoute connection from Microsoft Azure to a data center. they want to secure communication over ExpressRoute and to install an in-line fortigate to perform intrusion prevention system (IPS) and antivirus scannig

install fortigatein azure and build a vpn tunnel to the data center over expressRoute

configure a user defined route table

enable the redirect option in expressroute to send data center traffic to user defined route table

configure the gateway subnet as the subnet in the user-defined route table

define a default route where the next hop ip is the fortigate wan interface

2.

MULTIPLE SELECT QUESTION

45 sec • 1 pt

which two statements about the amazon cloud services (AWS) network access control list (ACLS) are true?(choose two)

network ACLS are stateless and inbound and outbound rules are used for traffic filtering

network ACLS are stateful and inbound and outbound rules are used for traffic filtering

network ACLS must be manually applied to virtual network interfaces

network ACLS support allow rules and deny rules

3.

MULTIPLE SELECT QUESTION

45 sec • 1 pt

which three properties are configurable microsoft azure network security group rule settings? Choose three

Action

Sequence number

source and destination ip ranges

destination port ranges

source port ranges

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Media Image

refer to the exhibit you attempted to deploy the fortigate VM in Microsoft azure with the JSON template, and it failed to boot up. the exhibit shows an excerpt the JSON template. What is incorrect with the template

the LUN ID is not defined

Fortigate VM does not support managed DISK from Azure

the caching parameter should be none

the create options parameter should be fromImage

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Media Image

refer to th exhibit you are configuring an active passive fortigate clustering protocol FGCP HA configuration in a single availability zone in amazon web services AWS using a cloud formation template. after deploying the template you notice that the AWS console has ip information listed in the fortigate VM firewalls in the HA configuration however within the configuration of FortiOS you notice that port1 is using anip of 10.0.013 and port2 is using an ip of 10.0.1..13

configure fortios to use static ip addresses with the ip addresses reflected in the ENI primary IP address configuration (as per the exhibit)

Delete the deployment and start again you have in put the wrong parameters during the cloud formation template deployment

configure fortios to use DHCP so that it will get the correct IP adresses on the ports

nothing in AWS cloud it is normal for a fortigate ENI primary ip address to be different that the fortios IP address configuation

6.

MULTIPLE SELECT QUESTION

45 sec • 1 pt

Media Image

refer to the exhibit which two conditions will enable you to segregate and secure the traffic between the hub and the spokes in Microsft Azure? Choose two

implement the fortigate VM network virtual appliance NVA in the hub and use user defined toutes UDRs in the spokes

use ExpressRoute to interconnect the hub VNets and spoke VNets

configure Vnet peering between the spokes only

configure Vnet peering between the hub and spokes

7.

MULTIPLE SELECT QUESTION

45 sec • 1 pt

Media Image

refer to th exhibit consider an active-passive HA deployment in microsoft azure the exhibit shows an excerpt from the passive fortigateVM node if the active fortigate VM fails what are the results of the API calls made by the fortigate named SSTENTAZFGT-0302 choose two

SSTENTAZFGT-03-FloatingPIP is assingned to the ip configuration with the same SSTENTAZFGT-0302-NIC-01 under the network interface SSTENTAZFGT-0302-NIC-01

172.29.32.71 is set as next hop IP for all routes under fortigateUDR-01

the network interface of the active unit moves to itself

SSTENTAZFGT-03-FloatingPIP public ip is a assigned to NIC SSTENTAZFGT-0302-NIC-01

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?