nerdexam
Fortinet

FCSS_EFW_AD-7.4 · Question #47

What is the initial step performed by FortiGate when handling the first packets of a session?

The correct answer is C. Security inspections such as ACL, HPE, and IP integrity header checking. When FortiGate processes the first packets of a session, it follows a sequence of steps to determine how the traffic should be handled before establishing a session. The initial step Access Control List (ACL) checks: Determines if the traffic should be allowed or blocked based…

Hardware Acceleration

Question

What is the initial step performed by FortiGate when handling the first packets of a session?

Options

  • AInstallation of the session key in the network processor (NP)
  • BData encryption and decryption
  • CSecurity inspections such as ACL, HPE, and IP integrity header checking
  • DOffloading the packets directly to the content processor (CP)

How the community answered

(25 responses)
  • A
    8% (2)
  • C
    80% (20)
  • D
    12% (3)

Explanation

When FortiGate processes the first packets of a session, it follows a sequence of steps to determine how the traffic should be handled before establishing a session. The initial step Access Control List (ACL) checks: Determines if the traffic should be allowed or blocked based on predefined security rules. Hardware Packet Engine (HPE) inspections: Ensures that packet headers are valid and comply with protocol standards. IP Integrity Header Checking: Verifies if the IP headers are intact and not malformed or spoofed. Once these security inspections are completed and the session is validated, FortiGate then installs the session in hardware (if offloading is enabled) or processes it in software.

Topics

#packet processing pipeline#ACL check#IP integrity#session first packet

Community Discussion

No community discussion yet for this question.

Full FCSS_EFW_AD-7.4 Practice