ExamGecko
Question list
Search
Search

Related questions











Question 2 - NSE7_OTS-7.2 discussion

Report
Export

Which three criteria can a FortiGate device use to look for a matching firewall policy to process traffic? (Choose three.)

A.
Services defined in the firewall policy.
Answers
A.
Services defined in the firewall policy.
B.
Source defined as internet services in the firewall policy
Answers
B.
Source defined as internet services in the firewall policy
C.
Lowest to highest policy ID number
Answers
C.
Lowest to highest policy ID number
D.
Destination defined as internet services in the firewall policy
Answers
D.
Destination defined as internet services in the firewall policy
E.
Highest to lowest priority defined in the firewall policy
Answers
E.
Highest to lowest priority defined in the firewall policy
Suggested answer: A, D, E

Explanation:

The three criteria that a FortiGate device can use to look for a matching firewall policy to process traffic are:

A) Services defined in the firewall policy - FortiGate devices can match firewall policies based on the services defined in the policy, such as HTTP, FTP, or DNS.

D) Destination defined as internet services in the firewall policy - FortiGate devices can also match firewall policies based on the destination of the traffic, including destination IP address, interface, or internet services.

E) Highest to lowest priority defined in the firewall policy - FortiGate devices can prioritize firewall policies based on the priority defined in the policy. The device will process traffic against the policy with the highest priority first and move down the list until it finds a matching policy.

Fortinet NSE 7 - Enterprise Firewall 6.4 Study Guide, Chapter 4: Policy Implementation, page 4-18.

asked 18/09/2024
Patrick Neason
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first