exam questions

Exam NSE7_SDW-6.4 All Questions

View all questions & answers for the NSE7_SDW-6.4 exam

Exam NSE7_SDW-6.4 topic 1 question 15 discussion

Actual exam question from Fortinet's NSE7_SDW-6.4
Question #: 15
Topic #: 1
[All NSE7_SDW-6.4 Questions]

Refer to the exhibit.

Based on the exhibit, which statement about FortiGate re-evaluating traffic is true?

  • A. The type of traffic defined and allowed on firewall policy ID 1 is UDP.
  • B. Changes have been made on firewall policy ID 1 on FortiGate.
  • C. Firewall policy ID 1 has source NAT disabled.
  • D. FortiGate has terminated the session after a change on policy ID 1.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
FortiSherlock
2 years ago
Selected Answer: B
I agree with B, even though the answer could also be wrong. Could have been a routing change and not a change on policy id 1 that dirtied the session. But B is the most likely correct answer.
upvoted 1 times
...
dede1234
2 years, 2 months ago
answer is B https://community.fortinet.com/t5/FortiGate/Technical-Tip-Dirty-session/ta-p/197748
upvoted 1 times
...
chgook
2 years, 3 months ago
A dirty session is a session that must be re-evaluated by the kernel after it is impacted by a routing, firewall policy, or interface change. FortiGate performs route lookups for both original and reply traffic. Also, during route lookup, policy routes are also checked.
upvoted 1 times
...
Bob_Oso
2 years, 5 months ago
Selected Answer: B
B refer to SD-WAN_6.4_Study_Guide page 51
upvoted 2 times
...
haphap
2 years, 8 months ago
B . DIRTY MAY_DIRTY
upvoted 3 times
...
evdw
2 years, 8 months ago
Agree correct answer is B
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago