View all questions & answers for the FCP - FortiGate 7.4 Administrator Exam Materials exam


Question 9 Discussion

Refer to the exhibits. The exhibits show a diagram of a FortiGate device connected to the network, VIP configuration, firewall policy, and the sniffer CLI output on the FortiGate device. The WAN (port1) interface has the IP address 10.200.1.1/24. The LAN (port3) interface has the IP address 10.0.1.254/24. The webserver host (10.0.1.10) must use its VIP external IP address as the source NAT (SNAT) when it pings remote server (10.200.3.1). Which two statements are valid to achieve this goal? (Choose two answers)

  • A. Create a new firewall policy before Internet_Access for the webserver and apply the IP pool
  • B. Disable port forwarding on the VIP object
  • C. Disable NAT on the Internet_Access firewall policy
  • D. Enable NAT on the Allow_access firewall policy
Correct Answer: A,B

Brave-Dump Clients Votes

BD 100%

Comments



Test 2025-11-19 22:52:49

Selected Answers: B, D


Disable port forwarding on the VIP object
Enable NAT on the Allow_access firewall policy


Test 2025-11-19 22:55:25

Selected Answers: B, D


.