nerdexam
Fortinet

FCP_FGT_AD-7.6 · Question #65

Refer to the exhibit showing a debug flow output. Which two conclusions can you make from the debug flow output? (Choose two.)

The correct answer is A. The default gateway is configured on port2. D. The matching firewall policy denies the traffic. The default gateway is configured on port2 → The debug output shows find a route: flag=00000000 gw-0.0.0.0 via port2, which indicates that the default route (0.0.0.0/0) points out The matching firewall policy denies the traffic → The log line Denied by forward policy check…

Submitted by khalil_dz· Apr 18, 2026Firewall policies and authentication

Question

Refer to the exhibit showing a debug flow output. Which two conclusions can you make from the debug flow output? (Choose two.)

Exhibit

FCP_FGT_AD-7.6 question #65 exhibit

Options

  • AThe default gateway is configured on port2.
  • BThe RPF check fails.
  • CThe debug flow is for UDP traffic.
  • DThe matching firewall policy denies the traffic.

How the community answered

(34 responses)
  • A
    71% (24)
  • B
    12% (4)
  • C
    18% (6)

Explanation

The default gateway is configured on port2 → The debug output shows find a route: flag=00000000 gw-0.0.0.0 via port2, which indicates that the default route (0.0.0.0/0) points out The matching firewall policy denies the traffic → The log line Denied by forward policy check (policy 2) confirms that policy 2 matched and explicitly dropped the traffic.

Topics

#debug flow#packet processing#routing#firewall policies

Community Discussion

No community discussion yet for this question.

Full FCP_FGT_AD-7.6 Practice