nse8_812 Exam QuestionsBrowse all questions from this exam

nse8_812 Exam - Question 30


Refer to the exhibit, which shows the high availability configuration for the FortiAuthenticator (FAC1).

GUI Access -

Based on this information, which statement is true about the next FortiAuthenticator (FAC2) member that will join an HA cluster with this FortiAuthenticator (FAC1)?

Show Answer
Correct Answer: AB

The FortiAuthenticator (FAC1) is configured as a Standalone Primary, indicating an active-passive high availability setup. This means that FAC2 can only process requests when FAC1 fails, implying FAC2 serves as a backup to take over in case the primary unit fails.

Discussion

6 comments
Sign in to comment
semsemccieOption: B
Aug 24, 2023

configured as active-active so interfaces can be in different network B is correct

Viewable8041Option: B
Sep 5, 2023

As semsemccie described: configured as active-active (Standalone Primary for FAC1) so interfaces can be in different network B is correct

pplee_shOption: D
Aug 21, 2023

B is wrong, Select a network interface to use for communication between the cluster members. This interface must not already have a IP address assigned and it cannot be used for authentication services. Both units must use the same interface for HA communication.

PaloPalacios
Sep 9, 2023

D is wrong - Other features, such as FSSO cannot be synchronized between devices. https://docs.fortinet.com/document/fortiauthenticator/6.5.3/administration-guide/122076/high-availability

ama6Option: B
Sep 17, 2023

B is correct FortiAuthenticator VMs used in a HA cluster each require a license. Each license is tied to a specific IP address. In an HA cluster, all interface IP addresses are the same on the units, expect for the HA interface. Request each license backed on either the unique IP address of the unit's HA interface or the IP address of a non-HA interface which is the same on both units. https://docs.fortinet.com/document/fortiauthenticator/6.5.3/administration-guide/122076/high-availability#Standalo

pitzOption: B
Oct 6, 2023

Other features, such as FSSO cannot be synchronized between devices. https://docs.fortinet.com/document/fortiauthenticator/6.5.3/administration-guide/122076/high-availability

re_j0hnOption: B
Feb 8, 2024

Answer is B. A is wrong because the setup is not Active/Passive HA. C is wrong because FortiToken is synced. D is wrong because FSSO session is not synced.