Based on the information shown in the exhibits, what configuration change must be made on dc1_fgt so dc1_fgt routes the reply traffic over T_INET_1_0?

Refer to the exhibits.

Exhibit A –

Exhibit B

Exhibit A shows a site-to-site topology between two FortiGate devices: branch1_fgt and dc1_fgt.

Exhibit B shows the system global and system settings configuration on dc1_fgt.

When branch1_client establishes a connection to dc1_host, the administrator observes that, on dc1_fgt, the reply traffic is routed over T_INET_0_0, even though T_INET_1_0 is the preferred member in the matching SD-WAN rule.

Based on the information shown in the exhibits, what configuration change must be made on dc1_fgt so dc1_fgt routes the reply traffic over T_INET_1_0?
A . Enable auxiliary-session under config system settings.
B . Disable tсp-session-without-syn under config system settings.
C . Enable snat-route-change under config system global.
D . Disable allow-subnet-overlap under config system settings.

Answer: A

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments