NSE4-5.4 Exam QuestionsBrowse all questions from this exam

NSE4-5.4 Exam - Question 7


Which statements about high availability (HA) for FortiGates are true? (Choose two.)

Show Answer
Correct Answer: AD

Virtual clustering can be configured between two FortiGate devices with multiple VDOMs, which enables higher availability and load balancing across the devices. Sessions handled by the UTM proxy cannot be synchronized, as the session state information for proxy-based sessions is not replicated between cluster members, affecting session continuity during a failover.

Discussion

3 comments
Sign in to comment
PoBratsky
Dec 15, 2022

A and d

PoBratsky
Dec 15, 2022

C is not true

wohnyOptions: AD
Dec 12, 2024

... however option D is not 100% correct: By default, the feature synchronizes TCP firewall sessions that are not subject to proxy-based inspection. An exception to this rule is TCP SIP sessions inspected by SIP ALG. Even though SIP ALG performs proxy-based inspection on SIP sessions, FortiGate can still synchronize such SIP sessions.