NSE4 · Question #334
What FortiGate feature can be used to allow IPv6 clients to connect to IPv4 servers?
The correct answer is B. NAT64. To enable IPv6 clients to access IPv4 servers, FortiGate offers the NAT64 feature, which translates IPv6 addresses and protocols to IPv4.
Question
What FortiGate feature can be used to allow IPv6 clients to connect to IPv4 servers?
Options
- AIPv6-over-IPv4 IPsec
- BNAT64
- CIPv4-over-IPv6 IPsec
- DNAT66
How the community answered
(34 responses)- A3% (1)
- B88% (30)
- C6% (2)
- D3% (1)
Why each option
To enable IPv6 clients to access IPv4 servers, FortiGate offers the NAT64 feature, which translates IPv6 addresses and protocols to IPv4.
IPv6-over-IPv4 IPsec is used for securely tunneling IPv6 traffic over an IPv4 network, not for translating addresses between IPv6 clients and IPv4 servers for direct access.
NAT64 is a crucial transition mechanism that allows IPv6-only clients to communicate seamlessly with IPv4-only servers. The FortiGate performs Network Address Translation, translating IPv6 source and destination addresses to IPv4 addresses, enabling connectivity between the two different IP address families.
IPv4-over-IPv6 IPsec is used for securely tunneling IPv4 traffic over an IPv6 network, which is the reverse scenario of what is needed.
NAT66 refers to Network Address Translation between different IPv6 address blocks, typically used for privacy or renumbering within an IPv6-only network, not for inter-family translation to IPv4.
Concept tested: IPv6 to IPv4 transition mechanism (NAT64)
Source: https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/526615/nat64
Topics
Community Discussion
No community discussion yet for this question.