Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet Exam FCP_FGT_AD-7.6 Topic 2 Question 9 Discussion

Actual exam question for Fortinet's FCP_FGT_AD-7.6 exam
Question #: 9
Topic #: 2
[All FCP_FGT_AD-7.6 Questions]

Refer to the exhibits.

The exhibits show a diagram of a FortiGate device connected to the network, as well as the IP pool configuration and firewall policy objects.

The WAN (port2) interface has the IP address 100.65.0.101/24.

The LAN (port4) interface has the IP address 10.0.11.254/24.

Which IP address will be used to source NAT (SNAT) the traffic, if the user on

HQ-PC-1 (10.0.11.50) pings the IP address of BR-FGT (100.65.1.111)

Show Suggested Answer Hide Answer
Suggested Answer: C

The ping traffic policy uses the IP pool named SNAT-Remote1, which has the external IP range 100.65.0.99. Therefore, traffic matching this policy (ping from HQ-PC-1 to BR1-FGT) will use 100.65.0.99 for source NAT.


Contribute your Thoughts:

Tawny
5 days ago
I remember a similar question where the source IP was the WAN address, so I’m leaning towards option A.
upvoted 0 times
...
Glory
11 days ago
I think the source NAT should use the WAN interface IP, which is 100.65.0.101, right? But I'm not completely sure.
upvoted 0 times
...
Doug
16 days ago
I'm pretty confident the answer is A. The WAN interface IP of 100.65.0.101 will be used for SNAT since it's the default gateway for the LAN network.
upvoted 0 times
...
Judy
21 days ago
Okay, I think I've got this. The WAN interface has an IP of 100.65.0.101, and the IP pool has a range starting at 100.65.0.49. So the SNAT IP address should be 100.65.0.49.
upvoted 0 times
...
Eulah
26 days ago
Hmm, I'm a bit confused by the different IP addresses involved. Let me re-read the question and exhibits to make sure I understand the network setup.
upvoted 0 times
...
Lavera
1 months ago
This looks like a tricky NAT question. I'll need to carefully review the network diagram and IP pool configuration to determine the correct SNAT IP address.
upvoted 0 times
...
My
1 months ago
I think the answer is A) 100.65.0.101 because it is the WAN interface IP address.
upvoted 0 times
...
Tony
1 months ago
Hmm, let me think about this. If the user on HQ-PC-1 (10.0.11.50) pings the IP address of BR-FGT (100.65.1.111), the SNAT should happen on the WAN interface. That means the correct answer is A) 100.65.0.101.
upvoted 0 times
...
Pura
3 months ago
The WAN interface has the IP address 100.65.0.101/24, so the SNAT traffic should be sourced from that IP. The correct answer is A) 100.65.0.101.
upvoted 0 times
William
1 months ago
Yes, you are right. The WAN interface has the IP address 100.65.0.101/24, so that IP will be used for SNAT.
upvoted 0 times
...
Kaycee
2 months ago
I think the correct answer is A) 100.65.0.101.
upvoted 0 times
...
...

Save Cancel