A. FortiGate drops the traffic flow. Setting a deny action in a policy route stops policy-based routing evaluation; it does not drop the packet. Packet dropping is exclusively handled by firewall policies.
C. FortiGate load balances the traffic flow through port7 and port8. Because the traffic matches the standard deny policy route, it bypasses SD-WAN rule evaluation entirely, preventing SD-WAN load balancing algorithms from processing the flow.
D. FortiGate steers the traffic flow through port7. The deny action in the matched standard policy route preempts all SD-WAN rule processing. Therefore, traffic will not be steered by any configured SD-WAN service members or SLAs.