FCP_FAZ_AD-7.4 · Question #8
In a Fortinet Security Fabric, what can make an upstream FortiGate create traffic logs associated with sessions initiated on downstream FortiGate devices?
The correct answer is B. The upstream FortiGate is configured to do NAT. When the upstream FortiGate is performing Network Address Translation (NAT), it creates new session entries for traffic passing through it. As a result, it generates its own traffic logs for those sessions, even if the sessions were initiated on a downstream FortiGate. This is…
Question
In a Fortinet Security Fabric, what can make an upstream FortiGate create traffic logs associated with sessions initiated on downstream FortiGate devices?
Options
- AThe traffic destination is another FortiGate in the fabric.
- BThe upstream FortiGate is configured to do NAT
- CLog redundancy is configured in the fabric.
- DThe downstream device cannot connect to FortiAnalyzer.
How the community answered
(29 responses)- A17% (5)
- B72% (21)
- C7% (2)
- D3% (1)
Explanation
When the upstream FortiGate is performing Network Address Translation (NAT), it creates new session entries for traffic passing through it. As a result, it generates its own traffic logs for those sessions, even if the sessions were initiated on a downstream FortiGate. This is because the upstream FortiGate is altering the source IP address, making it responsible for tracking the session details.
Topics
Community Discussion
No community discussion yet for this question.