nerdexam
Fortinet

FCSS_NST_SE-7.4 · Question #4

An administrator wants to capture encrypted phase 2 traffic between two FotiGate devices using the built-in sniffer. If the administrator knows that there is no NAT device located between both…

The correct answer is B. diagnose sniffer packet any 'lp proto 50'. See the full explanation below for the reasoning.

Question

An administrator wants to capture encrypted phase 2 traffic between two FotiGate devices using the built-in sniffer. If the administrator knows that there is no NAT device located between both FortiGate devices, which command should the administrator run?

Options

  • Adiagnose sniffer packet any 'udp port 500'
  • Bdiagnose sniffer packet any 'lp proto 50'
  • Cdiagnose sniffer packet any 'udp port 4500'
  • Ddiagnose sniffer packet any 'ah'

How the community answered

(26 responses)
  • A
    12% (3)
  • B
    81% (21)
  • C
    4% (1)
  • D
    4% (1)

Community Discussion

No community discussion yet for this question.

Full FCSS_NST_SE-7.4 Practice