Weekend Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = simple70

Pass the Fortinet Public Cloud Security FCP_GCS_AD-7.6 Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam FCP_GCS_AD-7.6 Premium Access

View all detail and faqs for the FCP_GCS_AD-7.6 exam


402 Students Passed

91% Average Score

90% Same Questions
Viewing page 1 out of 1 pages
Viewing questions 1-10 out of questions
Questions # 1:

Your organization is running an application in their shared services virtual public cloud (VPC) and must control network access natively in the cloud.

How can your organization meet this requirement?

Options:

A.

Create a firewall policy for the entire VPC that allows access from all networks.

B.

Create another VPC in front of the shared services VPC and deploy FortiGate.

C.

Create a firewall rule that allows access to the application instance only.

D.

Create IAM access to allow access from specified resources only.

Questions # 2:

Refer to the exhibit.

Question # 2

Which two types of traffic flow must the FortiGate cluster inspect, if the client at 198.51.100.10 sends traffic to the Workload A instance? (Choose two.)

Options:

A.

North-bound

B.

South-bound

C.

West-bound

D.

East-bound

Questions # 3:

Your organization has decided to deploy a high-availability (HA) cluster. One kye requirement of the deployment is to support configuration synchronization.

Which three deployment types should be considered? (Choose three.)

Options:

A.

Active-passive HA using software-defined networking (SDN)

B.

Active-passive HA using passthrough load balancers

C.

Active-active HA using auto scaling

D.

Active-passive HA using FGSP

Questions # 4:

Google Cloud network services offer vast functionality and inter-connectivity between the cloud and on-premises networks.

Which three additional functions does FortiGate offer when deployed in Google Cloud to complement the native services offered by Google Cloud? (Choose three.)

Options:

A.

SSL VPN

B.

SSL inspection

C.

Secure SD-WAN with application visibility

D.

Web filtering

E.

OSPF over IPSec

Questions # 5:

Your organization has decided to deploy a Fortinet web application firewall (WAF) in Google Cloud.

Why would the organization choose FotiWeb Cloud over FortiWeb VM?

Options:

A.

Because the organization requires a WAF with SSL offloading and load balancing

B.

Because the organization requires a fully managed WAF solution

C.

Because the organization requires a WAF with highly customizable WAF rules and settings

D.

Because the organization requires advanced bot detection and mitigation

Questions # 6:

Your organization has deployed an active-active high-availability (HA) FortiGate cluster in Google Cloud. You have noticed a significant increase in asymmetrical traffic flow.

Which two actions can you take to mitigate the issue? (Choose two.)

Options:

A.

Enable source NAT for ingress traffic.

B.

Enable symmetric hashing on the external load balancer.

C.

Enable the layer 3 unified threat management (UTM) scanning feature if the FortiGate devices are on ForiOS 6.4 or later.

D.

Enable destination NAT for ingress traffic.

Questions # 7:

Which Fortinet proprietary protocol do you use when deploying an active-passive high-availability (HA) cluster in Google Cloud?

Options:

A.

Broadcast FGCP

B.

Unicast FGCP

C.

Anycast FGSP

D.

Multicast FGSP

Questions # 8:

An organization is deploying an active-passive high availability (HA) cluster using passthrough load balancers in Google Cloud.

What is a critical factor for ensuring successful HA formation, failover, and traffic flow?

Options:

A.

Unicast FortiGate Clustering Protocol (FGCP) must be used.

B.

VDOM exceptions must be configured.

C.

Incoming traffic must be source NATed to ensure traffic flow symmetry.

D.

There can be more than two cluster members.

Questions # 9:

Refer to the exhibit.

Question # 9

In this hybrid environment, in which two ways does the traffic flow from a network node in the on-premises network to Workload B in Google Cloud? (Choose two.)

Options:

A.

Traffic will not reach the FortiGate devices because both load balancers are internal.

B.

Once the traffic has been inspected, the active FortiGate uses VPC peering to forward the traffic to the Server project A VPC.

C.

When the packet reaches the external VPC, it is forwarded to the active FortiGate cluster member using a custom static route.

D.

Traffic will be routed using VPC peering from the Internal VPC to the destination subnet.

Questions # 10:

Refer to the exhibit.

Question # 10

Which action must the administrator take to route traffic from VPC B to VPC A?

Options:

A.

The administrator must create a new VPC peering connection between VPC A and VPC B.

B.

The administrator must configure a custom route in VPC B and point the gateway to the VPC peering service.

C.

The administrative must configure a custom route in VPC B and point the gateway to VPC A.

D.

The administrator must deploy a FortiGate VM with at least three network interfaces.

Viewing page 1 out of 1 pages
Viewing questions 1-10 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.