nerdexam
Fortinet

FCP_FWB_AD-7.4 · Question #1

Refer to the exhibit. A FortiWeb device is deployed upstream of a device performing source network address translation (SNAT) or load balancing. What configuration must you perform on FortiWeb to…

The correct answer is A. Enable and configure the Preserve Client IP setting. When FortiWeb is deployed upstream of a device performing source network address translation (SNAT) or load balancing, the original client IP address may be lost. To preserve the original client IP address, you must enable and configure the Preserve Client IP setting on…

Deployment

Question

Refer to the exhibit. A FortiWeb device is deployed upstream of a device performing source network address translation (SNAT) or load balancing. What configuration must you perform on FortiWeb to preserve the original IP address of the client?

Exhibit

FCP_FWB_AD-7.4 question #1 exhibit

Options

  • AEnable and configure the Preserve Client IP setting.
  • BUse a transparent operating mode on FortiWeb.
  • CEnable and configure the Add X-Forwarded-For setting.
  • DTurn off NAT on the FortiWeb.

How the community answered

(25 responses)
  • A
    72% (18)
  • B
    16% (4)
  • C
    8% (2)
  • D
    4% (1)

Explanation

When FortiWeb is deployed upstream of a device performing source network address translation (SNAT) or load balancing, the original client IP address may be lost. To preserve the original client IP address, you must enable and configure the Preserve Client IP setting on FortiWeb. This allows FortiWeb to retain and pass the client's original IP address to the backend servers for accurate logging and processing.

Topics

#SNAT#client IP preservation#FortiWeb configuration#X-Forwarded-For

Community Discussion

No community discussion yet for this question.

Full FCP_FWB_AD-7.4 Practice