exam questions

Exam NSE4_FGT-6.2 All Questions

View all questions & answers for the NSE4_FGT-6.2 exam

Exam NSE4_FGT-6.2 topic 1 question 12 discussion

Actual exam question from Fortinet's NSE4_FGT-6.2
Question #: 12
Topic #: 1
[All NSE4_FGT-6.2 Questions]

What criteria does FortiGate use to look for a matching firewall policy to process traffic? (Choose two.)

  • A. Services defined in the firewall policy.
  • B. Incoming and outgoing interfaces
  • C. Highest to lowest priority defined in the firewall policy.
  • D. Lowest to highest policy ID number.
Show Suggested Answer Hide Answer
Suggested Answer: AB 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
AOC
4 years ago
AyB Correcto. De acuerdo con gordonF
upvoted 3 times
...
gordonF
4 years, 1 month ago
Incoming Interface Outgoing Interface Source: IP address, user Destination: IP address or Internet Services Service: IP protocol and port number Schedule: applies during configured times
upvoted 1 times
Cyril_the_Squirl
4 years ago
The order is in fact like so: Incoming Interface Source: IP address, user Outgoing Interface Destination: IP address or Internet Services Service: IP protocol and port number Schedule: applies during configured times https://docs.fortinet.com/document/fortigate/6.0.0/handbook/554066/firewall-policies A & B are correct
upvoted 1 times
siscoFe
3 years, 10 months ago
There is a difference between how the GUI displays the Policy config parameters order and how the packet is processed when traversing. A and B are correct answers since they are required during the policy configuration.
upvoted 1 times
...
...
...
gordonF
4 years, 1 month ago
Confirm A and B. fortigate security pg 99 and 100
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago