nerdexam
Fortinet

FCP_FGT_AD-7.6 · Question #95

Refer to the exhibits. The exhibits show a diagram of a FortiGate device connected to the network, as well as the firewall policy and IP pool configuration on the FortiGate device. Two PCs, PC1 and…

The correct answer is A. In the IP pool configuration, set to overload. D. In the IP pool configuration, set endip to 100.65.0.112. The IP pool is configured as One-to-One with a range of only 100.65.0.110–100.65.0.111, which allows NAT for only two internal hosts (PC1 and PC2). When PC3 tries to access the internet, no external IP is available for mapping. - Change the IP pool type to Overload, allowing…

Submitted by saadiq_pk· Apr 18, 2026Firewall policies and authentication

Question

Refer to the exhibits. The exhibits show a diagram of a FortiGate device connected to the network, as well as the firewall policy and IP pool configuration on the FortiGate device. Two PCs, PC1 and PC2, are connected behind FortiGate and can access the internet successfully. However, when the administrator adds a third PC to the network (PC3), the PC cannot connect to the internet. Based on the information shown in the exhibit, which two configuration options can the administrator use to fix the connectivity issue for PC3? (Choose two.)

Exhibits

FCP_FGT_AD-7.6 question #95 exhibit 1
FCP_FGT_AD-7.6 question #95 exhibit 2
FCP_FGT_AD-7.6 question #95 exhibit 3

Options

  • AIn the IP pool configuration, set to overload.
  • BIn the system settings, set Multiple Interface Policies to enable.
  • CIn the firewall policy, set to using CLI.
  • DIn the IP pool configuration, set endip to 100.65.0.112.

How the community answered

(51 responses)
  • A
    84% (43)
  • B
    6% (3)
  • C
    10% (5)

Explanation

The IP pool is configured as One-to-One with a range of only 100.65.0.110–100.65.0.111, which allows NAT for only two internal hosts (PC1 and PC2). When PC3 tries to access the internet, no external IP is available for mapping. - Change the IP pool type to Overload, allowing multiple internal IPs to share a single external IP. - Expand the IP pool range by setting endip to 100.65.0.112 (or more) so that additional internal hosts (like PC3) can also be assigned a unique external IP.

Topics

#FortiGate NAT#IP Pool Configuration#Source NAT Overload#Firewall Policy

Community Discussion

No community discussion yet for this question.

Full FCP_FGT_AD-7.6 Practice