nse7_efw-70 Exam QuestionsBrowse all questions from this exam

nse7_efw-70 Exam - Question 14


An administrator has configured two FortiGate devices for an HA cluster. While testing HA failover, the administrator notices that some of the switches in the network continue to send traffic to the former primary device.

What can the administrator do to fix this problem?

Show Answer
Correct Answer: BD

To ensure that switches in the network clear their MAC tables and update them accordingly after a failover, enabling the link-failed-signal ensures that all interfaces, except the heartbeat and reserved management interfaces, shut down for a brief moment. This action simulates a link failure, prompting the network switches to clear these entries from their MAC tables, thereby fixing the issue where switches continue to send traffic to the former primary device.

Discussion

10 comments
Sign in to comment
LiliRoseOption: D
Jan 23, 2023

Virtual MAC Address and Failover - The new primary broadcasts Gratuitous ARP packets to notify the network that each virtual MAC is now reachable through a different switch port. - Some high-end switches might not clear their MAC table correctly after a failover - Solution: Force former primary to shut down all its interfaces for one second when the failover happens (excluding heartbeat and reserved management interfaces): #Config system ha set link-failed-signal enable end - This simulates a link failure that clears the related entries from MAC table of the switches.

AlabaOption: D
Jan 3, 2023

The answer is D

johnndOption: D
Jan 7, 2023

link-failed-signal - Enable to shut down all interfaces for 1 sec after a failover. Use if gratuitous ARPs do not update network.

TcmhOption: D
Nov 20, 2023

study guide 7.2 page 98

charruco
Jan 31, 2024

does this valid to 7.2?

NoBOdY366Option: D
Jan 9, 2023

The answer is D

certifi46Option: D
May 10, 2023

Study guide page 206

tururu1496Option: D
Jan 6, 2023

D is correct. This forces ports to flap so that the switch clears CAM table

JackeDOption: D
Jan 24, 2023

D of course

Nope_123Option: D
Mar 14, 2023

D is correct, see page 206 of 7.0 study guide

Seph1Option: D
Feb 4, 2023

D - is correct.