Fortinet
FCP_FGT_AD-7.6 · Question #41
You have configured the below commands on a FortiGate. What would be the impact of this configuration on FortiGate?
The correct answer is B. FortiGate will enable strict RPF on all its interfaces and port1 will be exempted from RPF checks. The global setting enables strict source checking (RPF) on all interfaces by default. The per- interface setting disables the source check on port1, exempting it from strict RPF enforcement.
Submitted by andres_qro· Apr 18, 2026Routing
Question
You have configured the below commands on a FortiGate. What would be the impact of this configuration on FortiGate?
Options
- AFortiGate will enable strict RPF on ail its interfaces and port1 will be enable for asymmetric
- BFortiGate will enable strict RPF on all its interfaces and port1 will be exempted from RPF checks.
- CPort1 will be enabled with flexible RPF, and all other interfaces will be enabled for strict RPF
- DThe global configuration will take precedence and FortiGate will enable strict RPF on all
How the community answered
(24 responses)- A4% (1)
- B92% (22)
- C4% (1)
Explanation
The global setting enables strict source checking (RPF) on all interfaces by default. The per- interface setting disables the source check on port1, exempting it from strict RPF enforcement.
Topics
#Reverse Path Forwarding (RPF)#Interface Configuration#Global vs. Interface Settings#Network Security
Community Discussion
No community discussion yet for this question.