Fortinet FCP - Google Cloud Security 7.6 Administrator FCP_GCS_AD-7.6 Exam Questions

Page: 1 / 14
Total 35 questions
Question 1

Refer to the exhibit.

An administrator configured GoogleCloud as an external fabric connector on FortiGate.

Which conclusion can you draw from the output?



Answer : D

The output shows the connector successfully retrieved project information and instance IP addresses (GCP Lab got 3 addresses), indicating it found multiple IPs assigned to Google Cloud instances.


Question 2

Refer to the exhibit.

Which three things happen during a failover in which the passive FortiGate VM becomes the master cluster member in an active-passive high-availability (HA) environment? (Choose three.)



Answer : B, C, E

The load balancer health check detects the failure of the old active member and forwards traffic to the new active member.

The health check reflects the status change, marking the previous active as unhealthy.

API calls update custom routes to redirect traffic to the new active cluster member's internal interface (port2).


Question 3

Your organization is deciding between deploying FortiGate active-passive high-availability (HA) in Google Cloud using either the software-defined network (SDN) connector or load balancers.

What two reasons should your organization choose the SDN connector over the load balancer deployment? (Choose two.)



Answer : A, D

Using the SDN connector avoids additional load balancer costs, making it more cost-effective.

The SDN connector enables multizone failover by directly managing network routing, which load balancers do not inherently support.


Question 4

An administrator has been tasked with modifying their organization's existing active-passive high-availability (HA) FortiGate cluster and turn it into an active-active HA cluster.

Which two behavior changes will the administrator see in the cluster after the change? (Choose two.)



Answer : A, C

Active-active HA does not require a dedicated HA communication port as each member handles traffic independently.

In active-active mode, cluster members operate more independently and do not present as a single logical device like in active-passive mode.


Question 5

Refer to the exhibit.

An organization has four virtual private cloud networks and deployed a FortiGate to protect the VPCs. FortiGate is configured with four network interfaces and each network interface is assigned one of the four VPCs.

The organization is expanding and plans to add two more VPCs.

Which two options can the organization use to support the two new VPCs? (Choose two.)



Answer : B, D

VPC peering allows connectivity between multiple VPCs without needing additional interfaces on FortiGate, enabling the existing FortiGate to protect multiple VPCs beyond its physical interface limits.

Adding a second FortiGate and configuring active-active HA enables scaling network protection for more VPCs by distributing traffic across multiple FortiGate instances, overcoming the network interface limit per VM.


Question 6

An organization has decided to deploy an active-active high-availability cluster in Google Cloud.

Which three load balancing features are critical to the successful deployment of the cluster? (Choose three.)



Answer : A, B, E

Health checks ensure load balancers route traffic only to healthy cluster members.

Forwarding rules act as next hops in routing, directing traffic appropriately within the HA cluster.

Symmetric hashing ensures consistent and balanced traffic distribution across cluster members, critical for active-active deployments.


Question 7

Refer to the exhibit.

In this hybrid environment, in which two ways does the traffic flow from a network node in the on-premises network to Workload B in Google Cloud? (Choose two.)



Answer : C, D

Traffic from on-premises enters the external VPC and is routed to the active FortiGate VM via custom routes for inspection.

After inspection, traffic is routed through VPC peering from the internal VPC to the service project subnet where Workload B resides.


Page:    1 / 14   
Total 35 questions