exam questions

Exam NSE4_FGT-7.0 All Questions

View all questions & answers for the NSE4_FGT-7.0 exam

Exam NSE4_FGT-7.0 topic 1 question 62 discussion

Actual exam question from Fortinet's NSE4_FGT-7.0
Question #: 62
Topic #: 1
[All NSE4_FGT-7.0 Questions]

Refer to the exhibit.
In the network shown in the exhibit, the web client cannot connect to the HTTP web server. The administrator runs the FortiGate built-in sniffer and gets the output as shown in the exhibit.

What should the administrator do next to troubleshoot the problem?

  • A. Execute a debug flow.
  • B. Run a sniffer on the web server.
  • C. Capture the traffic using an external sniffer connected to port1.
  • D. Execute another sniffer in the FortiGate, this time with the filter "host 10.0.1.10".
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Ruzjio
10 months ago
Selected Answer: A
Answer A is definitly correct
upvoted 2 times
...
kosta_georgiev
10 months, 3 weeks ago
Selected Answer: A
Correct answer is A, as from the snippet we can see that the traffic is entering the firewall LAN interface but it is not leaving, most likely because it is blocked and debug of the packet level is needed.
upvoted 3 times
...
Fabio6699
11 months ago
Selected Answer: D
D is also correct. Running a sniff using the host IP will show interfaces and whether traffic leaving as well.
upvoted 1 times
Kryten
10 months, 1 week ago
Same applies to using the port in the sniff...it should show traffic on that port leaving to the webserver. Since it does not, we know that no traffic is leaving the fortigate -> use debug next to see if its dropped.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...