Fortinet
FCP_FGT_AD-7.4 · Question #12
Refer to the exhibits. The exhibits show a diagram of a FortiGate device connected to the network, as well as the IP pool configuration and firewall policy objects. The WAN (port1) interface has the…
The correct answer is C. 10.200.1.99. All_TCP doesn't include ICMP. So you would match rule ID 2, in which uses IP Poop remote 1.
Firewall Policies
Question
Refer to the exhibits. The exhibits show a diagram of a FortiGate device connected to the network, as well as the IP pool configuration and firewall policy objects. The WAN (port1) interface has the IP address 10.200.1.1/24. The LAN (port3) interface has the IPaddress 10.0.1.254/24. Which IP address will be used to source NAT (SNAT) the traffic, if the user on Local-Client (10.0.1.10) pings the IP address of Remote-FortiGate (10.200.3.1)?
Exhibits
Options
- A10.200.1.1
- B10.200.1.149
- C10.200.1.99
- D10.200.1.49
How the community answered
(23 responses)- A13% (3)
- B4% (1)
- C74% (17)
- D9% (2)
Explanation
All_TCP doesn't include ICMP. So you would match rule ID 2, in which uses IP Poop remote 1.
Topics
#SNAT#IP pool#NAT#firewall policy
Community Discussion
No community discussion yet for this question.


