nerdexam
Fortinet

FCP_FGT_AD-7.4 · Question #12

Refer to the exhibits. The exhibits show a diagram of a FortiGate device connected to the network, as well as the IP pool configuration and firewall policy objects. The WAN (port1) interface has the…

The correct answer is C. 10.200.1.99. All_TCP doesn't include ICMP. So you would match rule ID 2, in which uses IP Poop remote 1.

Firewall Policies

Question

Refer to the exhibits. The exhibits show a diagram of a FortiGate device connected to the network, as well as the IP pool configuration and firewall policy objects. The WAN (port1) interface has the IP address 10.200.1.1/24. The LAN (port3) interface has the IPaddress 10.0.1.254/24. Which IP address will be used to source NAT (SNAT) the traffic, if the user on Local-Client (10.0.1.10) pings the IP address of Remote-FortiGate (10.200.3.1)?

Exhibits

FCP_FGT_AD-7.4 question #12 exhibit 1
FCP_FGT_AD-7.4 question #12 exhibit 2
FCP_FGT_AD-7.4 question #12 exhibit 3

Options

  • A10.200.1.1
  • B10.200.1.149
  • C10.200.1.99
  • D10.200.1.49

How the community answered

(23 responses)
  • A
    13% (3)
  • B
    4% (1)
  • C
    74% (17)
  • D
    9% (2)

Explanation

All_TCP doesn't include ICMP. So you would match rule ID 2, in which uses IP Poop remote 1.

Topics

#SNAT#IP pool#NAT#firewall policy

Community Discussion

No community discussion yet for this question.

Full FCP_FGT_AD-7.4 Practice