FCP_WCS_AD-7.4 Exam QuestionsBrowse all questions from this exam

FCP_WCS_AD-7.4 Exam - Question 21


Refer to the exhibit.

You deployed an active-passive FortiGate HA cluster using a CloudFormation template on an existing VPC. Now you want to test active-passive FortiGate HA failover by running a debug so you can see the API calls to change the Elastic and secondary IP addresses.

Which statement is correct about the output of the debug?

Show Answer
Correct Answer:

Discussion

2 comments
Sign in to comment
D10SJokerOption: B
Sep 17, 2024

EIP moves from port1 of FGT máster to port1 of FGT slave

havokduOption: B
Dec 13, 2024

Explanation: From the debug output, we see the following key information: send_vip_arp: vd root master 1 intf port1 ip 10.0.0.13 send_vip_arp: vd root master 1 intf port2 ip 10.0.1.13 This shows that the IP address 10.0.0.13 belongs to port1 on the primary FortiGate. The logs also indicate that the Elastic IP was associated with the ENI (Elastic Network Interface) holding the address 10.0.0.13. Since 10.0.0.13 is tied to port1, the Elastic IP is effectively associated with port1. The logs mention moving the secondary IP and associating the Elastic IP to the interface where 10.0.0.13 resides, confirming that port1 is the interface with the Elastic IP. Therefore, the correct statement about the debug output is that the Elastic IP is associated with port1 of the (now active) FortiGate unit.