nerdexam
Fortinet

NSE4 · Question #334

What FortiGate feature can be used to allow IPv6 clients to connect to IPv4 servers?

The correct answer is B. NAT64. To enable IPv6 clients to access IPv4 servers, FortiGate offers the NAT64 feature, which translates IPv6 addresses and protocols to IPv4.

Submitted by lucia.co· Apr 18, 2026VPN and Routing

Question

What FortiGate feature can be used to allow IPv6 clients to connect to IPv4 servers?

Options

  • AIPv6-over-IPv4 IPsec
  • BNAT64
  • CIPv4-over-IPv6 IPsec
  • DNAT66

How the community answered

(34 responses)
  • A
    3% (1)
  • B
    88% (30)
  • C
    6% (2)
  • D
    3% (1)

Why each option

To enable IPv6 clients to access IPv4 servers, FortiGate offers the NAT64 feature, which translates IPv6 addresses and protocols to IPv4.

AIPv6-over-IPv4 IPsec

IPv6-over-IPv4 IPsec is used for securely tunneling IPv6 traffic over an IPv4 network, not for translating addresses between IPv6 clients and IPv4 servers for direct access.

BNAT64Correct

NAT64 is a crucial transition mechanism that allows IPv6-only clients to communicate seamlessly with IPv4-only servers. The FortiGate performs Network Address Translation, translating IPv6 source and destination addresses to IPv4 addresses, enabling connectivity between the two different IP address families.

CIPv4-over-IPv6 IPsec

IPv4-over-IPv6 IPsec is used for securely tunneling IPv4 traffic over an IPv6 network, which is the reverse scenario of what is needed.

DNAT66

NAT66 refers to Network Address Translation between different IPv6 address blocks, typically used for privacy or renumbering within an IPv6-only network, not for inter-family translation to IPv4.

Concept tested: IPv6 to IPv4 transition mechanism (NAT64)

Source: https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/526615/nat64

Topics

#IPv6 Transition#IPsec VPN#Tunneling#Network Connectivity

Community Discussion

No community discussion yet for this question.

Full NSE4 Practice