New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet FCP_FGT_AD-7.6 Exam - Topic 2 Question 9 Discussion

Actual exam question for Fortinet's FCP_FGT_AD-7.6 exam
Question #: 9
Topic #: 2
[All FCP_FGT_AD-7.6 Questions]

Refer to the exhibits.

The exhibits show a diagram of a FortiGate device connected to the network, as well as the IP pool configuration and firewall policy objects.

The WAN (port2) interface has the IP address 100.65.0.101/24.

The LAN (port4) interface has the IP address 10.0.11.254/24.

Which IP address will be used to source NAT (SNAT) the traffic, if the user on

HQ-PC-1 (10.0.11.50) pings the IP address of BR-FGT (100.65.1.111)

Show Suggested Answer Hide Answer
Suggested Answer: C

The ping traffic policy uses the IP pool named SNAT-Remote1, which has the external IP range 100.65.0.99. Therefore, traffic matching this policy (ping from HQ-PC-1 to BR1-FGT) will use 100.65.0.99 for source NAT.


Contribute your Thoughts:

0/2000 characters
Nathan
2 months ago
100.65.0.101 is the right choice, no doubt!
upvoted 0 times
...
Caprice
2 months ago
Wait, how do we know it's not B or C?
upvoted 0 times
...
Trinidad
3 months ago
I thought it could be 100.65.0.49 too, but A seems solid.
upvoted 0 times
...
Rodolfo
3 months ago
Definitely going with A for SNAT.
upvoted 0 times
...
Kimbery
3 months ago
The WAN IP is 100.65.0.101.
upvoted 0 times
...
Vallie
3 months ago
I practiced a question like this, and it was definitely the WAN IP. So I’d go with A, but I hope I’m not missing something!
upvoted 0 times
...
Izetta
4 months ago
I’m a bit confused about the IP pool settings. Could it be one of the other options instead of just the WAN IP?
upvoted 0 times
...
Tawny
4 months ago
I remember a similar question where the source IP was the WAN address, so I’m leaning towards option A.
upvoted 0 times
...
Glory
4 months ago
I think the source NAT should use the WAN interface IP, which is 100.65.0.101, right? But I'm not completely sure.
upvoted 0 times
...
Doug
4 months ago
I'm pretty confident the answer is A. The WAN interface IP of 100.65.0.101 will be used for SNAT since it's the default gateway for the LAN network.
upvoted 0 times
...
Judy
4 months ago
Okay, I think I've got this. The WAN interface has an IP of 100.65.0.101, and the IP pool has a range starting at 100.65.0.49. So the SNAT IP address should be 100.65.0.49.
upvoted 0 times
...
Eulah
4 months ago
Hmm, I'm a bit confused by the different IP addresses involved. Let me re-read the question and exhibits to make sure I understand the network setup.
upvoted 0 times
...
Lavera
5 months ago
This looks like a tricky NAT question. I'll need to carefully review the network diagram and IP pool configuration to determine the correct SNAT IP address.
upvoted 0 times
...
My
5 months ago
I think the answer is A) 100.65.0.101 because it is the WAN interface IP address.
upvoted 0 times
...
Tony
5 months ago
Hmm, let me think about this. If the user on HQ-PC-1 (10.0.11.50) pings the IP address of BR-FGT (100.65.1.111), the SNAT should happen on the WAN interface. That means the correct answer is A) 100.65.0.101.
upvoted 0 times
...
Pura
6 months ago
The WAN interface has the IP address 100.65.0.101/24, so the SNAT traffic should be sourced from that IP. The correct answer is A) 100.65.0.101.
upvoted 0 times
William
5 months ago
Yes, you are right. The WAN interface has the IP address 100.65.0.101/24, so that IP will be used for SNAT.
upvoted 0 times
...
Kaycee
5 months ago
I think the correct answer is A) 100.65.0.101.
upvoted 0 times
...
...

Save Cancel