Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam NSE4_FGT-7.2 topic 1 question 21 discussion

Actual exam question from Fortinet's NSE4_FGT-7.2
Question #: 21
Topic #: 1
[All NSE4_FGT-7.2 Questions]

Which three criteria can FortiGate use to look for a matching firewall policy to process traffic? (Choose three.)

  • A. Services defined in the firewall policy
  • B. Highest to lowest priority defined in the firewall policy
  • C. Destination defined as Internet Services in the firewall policy
  • D. Lowest to highest policy ID number
  • E. Source defined as Internet Services in the firewall policy
Show Suggested Answer Hide Answer
Suggested Answer: ABE 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
raydel92
Highly Voted 7 months, 2 weeks ago
Selected Answer: ACE
Correct: A. Services defined in the firewall policy C. Destination defined as Internet Services in the firewall policy E. Source defined as Internet Services in the firewall policy FortiGate Security 7.2 Study Guide (p.52): "When a packet arrives, how does FortiGate find a matching policy? Each policy has match criteria, which you can define using the following objects: • Incoming Interface • Outgoing Interface • Source: IP address, user, internet services • Destination: IP address or internet services • Service: IP protocol and port number • Schedule: Specific times to apply policy" Reference and download study guide: https://ebin.pub/fortinet-fortigate-security-study-guide-for-fortios-72.html
upvoted 8 times
...
Slash_JM
Highly Voted 7 months, 3 weeks ago
Selected Answer: ACE
FortiGate Security 7.2 Study Guide p.52 The policies are consulted from top to bottom, regardless of the Policy ID #. The first rule that matches is applied and subsequent rules are not evaluated. FortiGate matches the traffic using the following criteria: - Incoming Interface - Outgoing Interface - Source (IP Address, User, Internet Services) - Destination (IP Address or Internet Services) - Service (IP Protocol and Port number) - Schedule (Time that the packet connected to the FortiGate)
upvoted 6 times
...
rian00z_
Most Recent 8 months, 1 week ago
Selected Answer: ACE
ACE is correct
upvoted 1 times
...
Danny_B
11 months ago
Selected Answer: ACE
7.2 SEC 52
upvoted 2 times
...
geroboamo
11 months, 1 week ago
Selected Answer: ACE
there is no priority to be defined in security policies, and the policy id is just for reference
upvoted 3 times
...
PaulGo
1 year ago
Selected Answer: ACE
Correct A, C, E
upvoted 1 times
...
Equiano
1 year, 1 month ago
Selected Answer: ACE
ACE is correct!
upvoted 1 times
...
DriftandLuna
1 year, 1 month ago
ACE, firewall policy will match on services, source & destinaiton
upvoted 1 times
...
leadac
1 year, 2 months ago
Selected Answer: ACE
ACE - Policy ID does not define a matching criteria, it´s just for editing purposes, and there is no priority in the policies, only their order will affect the matching process.
upvoted 3 times
...
Rich_Man_Rich
1 year, 3 months ago
ACE is correct
upvoted 2 times
...
indunil75
1 year, 3 months ago
ACE is correct
upvoted 3 times
...
chiheb
1 year, 3 months ago
Selected Answer: ACE
the correct answers are ACE.
upvoted 3 times
...
jberol
1 year, 3 months ago
ACE is correct
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...