FCP_FGT_AD-7.4 · Question #76
An administrator has configured a strict RPF check on FortiGate. How does strict RPF check work?
The correct answer is A. Strict RPF checks the best route back to the source using the incoming interface. Strict RPF (Reverse Path Forwarding) check ensures that the packet is received on the same interface that the FortiGate device would use to send traffic back to the source. It verifies that the best route to the source of the packet is through the same interface it arrived on…
Question
An administrator has configured a strict RPF check on FortiGate. How does strict RPF check work?
Options
- AStrict RPF checks the best route back to the source using the incoming interface.
- BStrict RPF allows packets back to sources with all active routes.
- CStrict RPF checks only for the existence of at least one active route back to the source using the
- DStrict RPF check is run on the first sent and reply packet of any new session.
How the community answered
(25 responses)- A84% (21)
- B4% (1)
- C8% (2)
- D4% (1)
Explanation
Strict RPF (Reverse Path Forwarding) check ensures that the packet is received on the same interface that the FortiGate device would use to send traffic back to the source. It verifies that the best route to the source of the packet is through the same interface it arrived on, enhancing security by preventing IP spoofing. If the check fails, the packet is dropped.
Topics
Community Discussion
No community discussion yet for this question.