Fortinet
NSE6 · Question #12
In "diag debug flow" output, you see the message "Allowed by Policy-1: SNAT". Which is true?
The correct answer is B. The packet matched the firewall policy whose policy ID is 1.. See the full explanation below for the reasoning.
Question
In "diag debug flow" output, you see the message "Allowed by Policy-1: SNAT". Which is true?
Options
- AThe packet matched the topmost policy in the list of firewall policies.
- BThe packet matched the firewall policy whose policy ID is 1.
- CThe packet matched a firewall policy, which allows the packet and skips UTM checks
- DThe policy allowed the packet and applied session NAT.
How the community answered
(23 responses)- A4% (1)
- B74% (17)
- C9% (2)
- D13% (3)
Community Discussion
No community discussion yet for this question.