ExamGecko
Question list
Search
Search

Question 52 - NSE4_FGT-7.2 discussion

Report
Export

An administrator has configured a strict RPF check on FortiGate. Which statement is true about the strict RPF check?

A.
The strict RPF check is run on the first sent and reply packet of any new session.
Answers
A.
The strict RPF check is run on the first sent and reply packet of any new session.
B.
Strict RPF checks the best route back to the source using the incoming interface.
Answers
B.
Strict RPF checks the best route back to the source using the incoming interface.
C.
Strict RPF checks only for the existence of at least one active route back to the source using the incoming interface.
Answers
C.
Strict RPF checks only for the existence of at least one active route back to the source using the incoming interface.
D.
Strict RPF allows packets back to sources with all active routes.
Answers
D.
Strict RPF allows packets back to sources with all active routes.
Suggested answer: B

Explanation:

Strict Reverse Path Forwarding (RPF) is a security feature that is used to detect and prevent IP spoofing attacks on a network. It works by checking the routing information for incoming packets to ensure that they are coming from the source address that is indicated in the packet's header. In strict RPF mode, the firewall will check the best route back to the source of the incoming packet using the incoming interface. If the packet's source address does not match the route back to the source, the packet is dropped. This helps to prevent attackers from spoofing their IP address and attempting to access the network.

asked 18/09/2024
Rannie Dayapan
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first