A retail customer with a FortiADC HA cluster load balancing five webservers in L7 Full NAT mode is receiving reports of users not able to access their website during a sale event. But for clients that were able to connect, the website works fine.
CPU usage on the FortiADC and the web servers is low, application and database servers are still able to handle more traffic, and the bandwidth utilization is under 30%.
Which two options can resolve this situation? (Choose two.)
A FortiGate is configured to perform outbound firewall authentication with Azure AD as a SAML IdP.
What are two valid interactions that occur when the client attempts to access the internet? (Choose two.)
Refer to the exhibit.

An HTTPS access proxy is configured to demonstrate its function as a reverse proxy on behalf of the web server it is protecting. It verifies user identity, device identity, and trust context, before granting access to the protected source. It is assumed that the FortiGate EMS fabric connector has already been successfully connected.
You need to ensure that ZTNA access through the FortiGate will redirect users to the FortiAuthenticator to perform username/password and multifactor authentication to validate access prior to accessing resources behind the FortiGate.
In this scenario, which two further steps need to be taken on the FortiGate? (Choose two.)
SD-WAN is configured on a FortiGate. You notice that when one of the internet links has high latency the time to resolve names using DNS from FortiGate is very high.
You must ensure that the FortiGate DNS resolution times are as low as possible with the least amount of work.
What should you configure?
SD-WAN is a feature that allows users to optimize network performance and reliability by using multiple WAN links and applying rules based on various criteria, such as latency, jitter, packet loss, etc. One way to ensure that the FortiGate DNS resolution times are as low as possible with the least amount of work is to configure local out traffic to use the outgoing interface based on SD-WAN rules with the interface IP and configure an SD-WAN rule to the DNS server. This means that the FortiGate will use the best WAN link available to send DNS queries to the DNS server according to the SD-WAN rule, and use its own interface IP as the source address. This avoids NAT issues and ensures optimal DNS performance. Reference: https://docs.fortinet.com/document/fortigate/7.0.0/sd-wan/19662/sd-wan
You deployed a fully loaded FG-7121F in the data center and enabled sslvpn-load-balance. Based on the behavior of this feature which statement is correct?
Gary Cooper
8 days agoJoshua Bell
22 days agoRonald Lewis
7 days agoJoseph Wilson
12 days agoEdward Mitchell
13 days agoRachel Lopez
16 days agoMatthew Perez
4 days agoPatricia Miller
17 days agoDelila
1 month agoTesha
2 months agoLoren
2 months agoAntonette
2 months agoLenna
2 months agoCeleste
3 months agoGilma
3 months agoAmber
3 months agoArmanda
3 months agoStefania
4 months agoRuthann
4 months agoMaryann
4 months agoFelicia
4 months agoCathrine
5 months agoKaitlyn
5 months agoCarrol
5 months agoClay
5 months agoMonroe
6 months agoMoon
6 months agoCarolynn
6 months agoPearlie
6 months agoIluminada
7 months agoAugustine
7 months agoLaila
7 months agoPeter
7 months agoHubert
8 months agoLuther
8 months agoJustine
8 months agoHyman
8 months agoCarolann
8 months agoPearlene
8 months agoLorrie
10 months agoMyra
10 months agoRosendo
11 months agoGeorgiann
11 months agoGlory
11 months agoLouann
1 year agoRikki
1 year agoCherri
1 year agoAshlyn
1 year agoNenita
1 year agoCassie
1 year agoMarkus
1 year agoJunita
1 year agoVirgilio
1 year agoRoosevelt
1 year agoNatalie
1 year agoMammie
1 year agoBillye
1 year agoValentin
1 year agoLaticia
1 year agoFrank
1 year agoGearldine
1 year agoLilli
1 year agoMica
1 year agoLouvenia
1 year agoMicaela
2 years agoIvette
2 years agoKristel
2 years agoRuby
2 years agoGeorgene
2 years agoMignon
2 years agoTyra
2 years agoBulah
2 years agoLetha
2 years agoNicolette
2 years agoMarla
2 years agoMatthew
2 years agoCarli
2 years agoViki
2 years agoRikki
2 years agoCarolynn
2 years agoJolene
2 years agoPaul
2 years agoMitsue
2 years ago