Free NSE6_WCS-6.4 Exam Braindumps (page: 1)

Page 1 of 8

An administrator has deployed an environment in AWS and is now trying to send outbound traffic from the web servers to the internet through FortiGate. The FortiGate policies are configured to allow all outbound traffic. however. the traffic is not reaching the FortiGate internal interface.

Which two statements Can be the reasons for this behavior? (Choose two )

  1. FortiGate is not configured as a default gateway tor web servers.
  2. Internet Gateway (IGW) is not configured for VPC.
  3. AWS security groups are blocking the traffic.
  4. AWS source destination checks are enabled on the FortiGate internal interfaces.

Answer(s): C,D



You are network connectivity issues between two VMS deployed in AWS. One VM is a FortiGate located on subnet ·LAN- that is part Of the VPC "Encryption". The Other VM is a Windows server located on the subnet "servers" Which is also in the "Encryption" VPC. You are unable to ping the Windows server from FortiGate.

What is the reason for this?

  1. You have not created a VPN to allow traffic between those subnets.
  2. By default. AWS does not allow ICMP traffic between subnets.
  3. The default AWS Network Access Control List (NACL) does not allow this traffic.
  4. The firewall in the Windows VM is blocking the traffic.

Answer(s): D



Your company deployed a FortiSandb0X for AWS.

Which statement is correct about FortiSandbox for AWS?

  1. FortiSandbox for AWS does not need more resources because it performs only management and analysis tasks.
  2. The FortiSandbox manager is installed on AWS platform and analyzes the results of the sandboxing process received from on-premises Windows instances.
  3. FortiSandbox for AWS comes as hybrid solution. The FortiSandb0X manager is installed on- premises and analyzes the results Of the sandboxing process received from AWS EC2 instances
  4. FortiSandbox deploys new EC2 instances with the custom Windows and Linux VMS, then it sends malware, runs it, and captures the results for analysis.

Answer(s): A



An organization has created a VPC and deployed a FortiGate-VM (VM04 /c4.xlarge) in AWS, FortiGate-VM is initially configured With two Elastic Network Interfaces (ENIs). The primary ENI of FortiGate-VM is configured for a public subnet. and the second ENI is configured for a private subnet. In order to provide internet access. they now want to add an EIP to the primary ENI of FortiGate, but the EIP assignment is failing.

Which action would allow the EIP assignment to be successful?

  1. Shut down the FortiGate VM. if it is running. assign the EIP to the primary ENI. and then power it on.
  2. Create and associate a public subnet With the primary ENI Of FortiGate, and then assign the EIP to the primary ENI.
  3. Create and attach a public routing table to the public subnet, associate the public subnet With the primary ENI Of FortiGate. and then assign the EP to the primary ENI.
  4. Create and attach an Internet gateway to the VPC. and then assign the EIP to the primary ENI Of FortiGate.

Answer(s): D



Page 1 of 8



Post your Comments and Discuss Fortinet NSE6_WCS-6.4 exam with other Community members:

Wing commented on August 08, 2023
HI, could you share the Fortinet NSE6_WCS-6.4 or 7.0 dump exam pdf ? Thanks
Anonymous
upvote

Kris commented on July 07, 2023
Good morning, could you please upload this exam again, I need it to test my knowledge in AWS with Fortinet.
Anonymous
upvote