NSE 7 – Public Cloud Security 6.4 — Question 11
Which two Amazon Web Services (AWS) topologies support east-west traffic inspection within the AWS cloud by the FortiGate VM? (Choose two.)
Answer options
- A. A single VPC deployment with multiple subnets and a NAT gateway
- B. A single VPC deployment with multiple subnets
- C. A multiple VPC deployment utilizing a transit VPC topology
- D. A multiple VPC deployment utilizing a transit gateway
Correct answer: C, D
Explanation
The correct answers are C and D because both the transit VPC and transit gateway topologies allow for east-west traffic flow between multiple VPCs, enabling inspection by FortiGate VM. Options A and B do not support the necessary traffic flow between multiple VPCs for this type of inspection.