Refer to the exhibit.

Traffic is initiated from the EC2 instance and is destined for the internet.
Which traffic flow is correct?
A. There is no route to the internet in the Private Route Table. The traffic does not reach the internet.
B. EC2 instance > GWLBe > internet
C. EC2 instance > NAT GW > IGW > internet
D. EC2 instance > GWLBe > NAT GW > IGW > internet
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
What is a drawback of deploying a FortiWeb VM inside a virtual public cloud (VPC) compared to FortiWeb Cloud?
A. It is unable to support web applications from OWASP Top 10 threats.
B. It does not support zero-day protection.
C. Only applications going through the VPC are protected.
D. It is slower than FortiWeb Cloud to apply advanced WAF protection.
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
Which two statements about the FortiCloud portal are true? (Choose two.)
A. You can gain remote access to your FortiGate VM directly from the portal.
B. You can access only cloud services that you have subscribed to on AWS marketplace.
C. You can access the FortiFlex portal only after you purchase a FortiFlex license and register it on FortiCare.
D. To assign permissions in the identity and access management (JAM) portal, you must write a JSON script.
正解:A,C
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
You need to deploy a new Windows server in AWS to offload web traffic from an existing web server in a different availability zone.
According to the AWS shared responsibility model, what three actions must you take to secure the new EC2 instance? (Choose three.)
A. Move all web servers into the same availability zone.
B. Change the existing elastic load balancer (ELB) to a gateway load balancer
C. Configure security groups.
D. Manage the operating system on the instance.
E. Update software on the instance.
正解:C,D,E
解説: (Pass4Test メンバーにのみ表示されます)
Suzuki -
問題集にてひたすら勉強して、試験中にかなり順調に回答しました。合格できました。ありがとうございました。