Correct:
A. Services defined in the firewall policy
C. Destination defined as Internet Services in the firewall policy
E. Source defined as Internet Services in the firewall policy
FortiGate Security 7.2 Study Guide (p.52):
"When a packet arrives, how does FortiGate find a matching policy? Each policy has match criteria, which you can define using the following objects:
• Incoming Interface
• Outgoing Interface
• Source: IP address, user, internet services
• Destination: IP address or internet services
• Service: IP protocol and port number
• Schedule: Specific times to apply policy"
Reference and download study guide:
https://ebin.pub/fortinet-fortigate-security-study-guide-for-fortios-72.html
FortiGate Security 7.2 Study Guide p.52
The policies are consulted from top to bottom, regardless of the Policy ID #. The first rule that matches is applied and subsequent rules are not evaluated. FortiGate matches the traffic using the following criteria:
- Incoming Interface
- Outgoing Interface
- Source (IP Address, User, Internet Services)
- Destination (IP Address or Internet Services)
- Service (IP Protocol and Port number)
- Schedule (Time that the packet connected to the FortiGate)
ACE - Policy ID does not define a matching criteria, it´s just for editing purposes, and there is no priority in the policies, only their order will affect the matching process.
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
raydel92
Highly Voted 1 year, 8 months agoSlash_JM
Highly Voted 1 year, 8 months agoCisco_SE_765
Most Recent 11 months, 1 week ago[Removed]
1 year, 8 months agoDanny_B
1 year, 11 months agogeroboamo
1 year, 12 months agoPaulGo
2 years, 1 month agoEquiano
2 years, 1 month agoDriftandLuna
2 years, 2 months agoleadac
2 years, 3 months agoRich_Man_Rich
2 years, 4 months agoindunil75
2 years, 4 months agochiheb
2 years, 4 months agojberol
2 years, 4 months ago