Question 26

Refer to the exhibit.


The exhibit contains a network diagram, central SNAT policy, and IP pool configuration.
The WAN (port1) interface has the IP address 10.200.1.1/24.
The LAN (port3) interface has the IP address 10.0.1.254/24.
A firewall policy is configured to allow to destinations from LAN (port3) to WAN (port1).
Central NAT is enabled, so NAT settings from matching Central SNAT policies will be applied.
Which IP address will be used to source NAT the traffic, if the user on Local-Client (10.0.1.10) pings the IP address of Remote-FortiGate (10.200.3.1)?
  • Question 27

    Which three strategies are valid SD-WAN rule strategies for member selection? (Choose three.)
  • Question 28

    An employee needs to connect to the office through a high-latency internet connection.
    Which SSL VPN setting should the administrator adjust to prevent SSL VPN negotiation failure?
  • Question 29

    An administrator needs to inspect all web traffic (including Internet web traffic) coming from users connecting to the SSL-VPN.
    How can this be achieved?
  • Question 30

    View the exhibit.
    A user at 192.168.32.15 is trying to access the web server at 172.16.32.254.

    Which two statements best describe how the FortiGate will perform reverse path forwarding (RPF) checks on this traffic? (Choose two.)