NSE4 · Question #529
In transparent mode, forward-domain is a CLI setting associated with _________ .
The correct answer is C. an interface.. In FortiGate transparent mode, the forward-domain CLI setting is configured on a network interface to control which VLANs or broadcast domains traffic is forwarded between.
Question
In transparent mode, forward-domain is a CLI setting associated with _________ .
Options
- Aa static route.
- Ba firewall policy.
- Can interface.
- Da virtual domain.
How the community answered
(24 responses)- A4% (1)
- C96% (23)
Why each option
In FortiGate transparent mode, the `forward-domain` CLI setting is configured on a network interface to control which VLANs or broadcast domains traffic is forwarded between.
Static routes define paths for network traffic based on IP addresses, which is primarily a Layer 3 concept, whereas `forward-domain` is a Layer 2 bridging concept used in transparent mode.
Firewall policies determine how traffic is allowed or denied based on various criteria, but `forward-domain` is a lower-level interface-specific setting for Layer 2 forwarding.
In transparent mode, a FortiGate acts like a bridge, and the `forward-domain` setting is applied to individual interfaces to define which logical forwarding group they belong to, enabling communication between interfaces within the same forward domain while isolating others.
Virtual domains (VDOMs) segment a single FortiGate into multiple virtual firewalls; while VDOMs can operate in transparent mode, `forward-domain` is an interface setting *within* a VDOM, not the VDOM itself.
Concept tested: FortiGate transparent mode interface configuration
Source: https://docs.fortinet.com/document/fortigate/7.4.0/cli-reference/169046/config-system-interface
Topics
Community Discussion
No community discussion yet for this question.