Question 1 of 30
A global enterprise is deploying a new branch office in a jurisdiction with stringent data privacy regulations that mandate all internet-bound traffic from the branch must undergo deep packet inspection at a designated security hub before egress. The current SD-WAN strategy prioritizes direct internet access (DIA) for cloud applications to optimize performance. How should the SD-WAN policy be configured for this new branch to comply with the new regulatory requirements while minimizing disruption to existing operations?
Create a new SD-WAN rule for the branch traffic that uses the "Apply Security" action, directing traffic to the central hub's security infrastructure.
Modify the existing "Prefer DIA" rule to include the new branch's IP subnet, assuming the DIA egress point has sufficient security features.
Implement a new SD-WAN rule with "Prefer Local Internet Breakout" for the branch, relying on local firewall policies at the branch for inspection.
Configure a "Prefer Hub Internet Breakout" rule for the branch, ensuring the hub's internet egress policy includes the necessary security inspection.

Preparing for NSE7_SDW7.2 Fortinet NSE 7 SDWAN 7.2? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free