NSE4 · Question #245
A FortiGate unit is configured with three Virtual Domains (VDOMs) as illustrated in the exhibit. Which of the following statements are correct regarding these VDOMs? (Select all that apply.)
The correct answer is A. The FortiGate unit supports any combination of these VDOMs in NAT/Route and Transparent F. An admin account can be assigned to one VDOM or it can have access to all three VDOMs. FortiGate VDOMs offer flexible deployment, allowing a mix of NAT/Route and Transparent modes for different VDOMs, and administrators can be scoped to a single VDOM or have access across multiple VDOMs.
Question
A FortiGate unit is configured with three Virtual Domains (VDOMs) as illustrated in the exhibit. Which of the following statements are correct regarding these VDOMs? (Select all that apply.)
Exhibit
Options
- AThe FortiGate unit supports any combination of these VDOMs in NAT/Route and Transparent
- BThe FortiGate unit must be a model 1000 or above to support multiple VDOMs.
- CA license had to be purchased and applied to the FortiGate unit before VDOM mode could be
- DAll VDOMs must operate in the same mode.
- EChanging a VDOM operational mode requires a reboot of the FortiGate unit.
- FAn admin account can be assigned to one VDOM or it can have access to all three VDOMs.
How the community answered
(39 responses)- A90% (35)
- B3% (1)
- C3% (1)
- D5% (2)
Why each option
FortiGate VDOMs offer flexible deployment, allowing a mix of NAT/Route and Transparent modes for different VDOMs, and administrators can be scoped to a single VDOM or have access across multiple VDOMs.
FortiGate VDOMs are highly flexible and can operate independently in either NAT/Route mode or Transparent mode, allowing different VDOMs on the same FortiGate unit to be configured for various network roles concurrently.
VDOM support is available on a wide range of FortiGate models, not just those 1000 or above; the number of supported VDOMs usually depends on the specific model and license.
VDOM functionality is often included by default on many FortiGate models, especially with certain firmware versions, and does not always require a separate license purchase.
It is a core feature of VDOMs that they can operate in different modes (NAT/Route or Transparent) concurrently on the same FortiGate unit.
Changing the operational mode of an individual VDOM typically does not require a full reboot of the entire FortiGate unit; only the specific VDOM configuration is updated, sometimes requiring a restart of services within that VDOM.
FortiGate administrative accounts can be configured with specific VDOM scopes, enabling an administrator to manage a single VDOM or granting them access to multiple or all VDOMs, depending on the assigned permissions.
Concept tested: FortiGate VDOM features, operational modes, and admin access
Source: https://docs.fortinet.com/document/fortigate/7.0.0/administration-guide/339414/virtual-domains
Topics
Community Discussion
No community discussion yet for this question.
