exam questions

Exam NSE4_FGT-7.2 All Questions

View all questions & answers for the NSE4_FGT-7.2 exam

Exam NSE4_FGT-7.2 topic 1 question 64 discussion

Actual exam question from Fortinet's NSE4_FGT-7.2
Question #: 64
Topic #: 1
[All NSE4_FGT-7.2 Questions]

Which two statements describe how the RPF check is used? (Choose two.)

  • A. The RPF check is a mechanism that protects FortiGate and the network from IP spoofing attacks.
  • B. The RPF check is run on the first sent and reply packet of any new session.
  • C. The RPF check is run on the first sent packet of any new session.
  • D. The RPF check is run on the first reply packet of any new session.
Show Suggested Answer Hide Answer
Suggested Answer: AC 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Takumi
Highly Voted 1 year, 9 months ago
Selected Answer: AC
The two statements that describe how the RPF check is used are A and C. RPF stands for Reverse Path Forwarding. It is a security mechanism that protects FortiGate and the network from IP spoofing attacks. The RPF check is run on the first sent packet of any new session. This is because the first packet is the only packet that contains the source IP address of the sender.
upvoted 6 times
...
Jumpy007
Most Recent 1 year, 7 months ago
Selected Answer: AC
Found this also which explains C litteraly. https://community.fortinet.com/t5/FortiGate/Technical-Tip-Reverse-path-forwarding-check-not-working-for/ta-p/230015
upvoted 1 times
...
Lalane
1 year, 7 months ago
Correct answer are A & D, because as indicated by its name "reverse patch check" is done on the first reply packet of any new session.
upvoted 1 times
...
raydel92
1 year, 7 months ago
Selected Answer: AC
A. The RPF check is a mechanism that protects FortiGate and the network from IP spoofing attacks. C. The RPF check is run on the first sent packet of any new session. FortiGate Infrastructure 7.2 Study Guide (p.41): "The RPF check is a mechanism that protects FortiGate and your network from IP spoofing attacks by checking for a return path to the source in the routing table." "FortiGate performs an RPF check only on the first packet of a new session. That is, after the first packet passes the RPF check and FortiGate accepts the session, FortiGate doesn’t perform any additional RPF checks on that session." Reference and download study guide: https://ebin.pub/fortinet-fortigate-infrastructure-study-guide-for-fortios-72.html
upvoted 4 times
...
bgod
1 year, 9 months ago
Selected Answer: AC
ref infrastructure page 41, first and second paragraph
upvoted 1 times
...
Takumi
1 year, 9 months ago
Selected Answer: AC
The answer are A and C
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago