exam questions

Exam FCP_FGT_AD-7.4 All Questions

View all questions & answers for the FCP_FGT_AD-7.4 exam

Exam FCP_FGT_AD-7.4 topic 1 question 20 discussion

Actual exam question from Fortinet's FCP_FGT_AD-7.4
Question #: 20
Topic #: 1
[All FCP_FGT_AD-7.4 Questions]

Which two statements describe how the RPF check is used? (Choose two.)

  • A. The RPF check is run on the first sent packet of any new session.
  • B. The RPF check is run on the first reply packet of any new session.
  • C. The RPF check is run on the first sent and reply packet of any new session.
  • D. The RPF check is a mechanism that protects FortiGate and the network from IP spoofing attacks.
Show Suggested Answer Hide Answer
Suggested Answer: AD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
wsdeffwd
Highly Voted 4 months ago
Selected Answer: AD
Page 86 "RPF check is only carried out on: The first packet in the session, not on a reply"
upvoted 9 times
...
wsdeffwd
Highly Voted 4 months ago
Selected Answer: AD
Page 86
upvoted 8 times
...
hecjoseroag
Most Recent 4 weeks ago
Selected Answer: AD
Whenever a packet arrives at one of the interfaces on a FortiGate, the FortiGate determines whether the packet was received on a legitimate interface by doing a reverse look-up using the source IP address in the packet header. This protects against IP spoofing attacks. If the FortiGate does not have a route to the source IP address through the interface on which the packet was received, the FortiGate drops the packet as per Reverse Path Forwarding (RPF) check. (page 433 FortiOS Administrator Guide)
upvoted 1 times
...
sxcap
1 month ago
Selected Answer: AD
RPF check is done on the first sent packet It helps to protect FortiGate against spoofing attacks
upvoted 1 times
...
evdw
1 month, 3 weeks ago
For packets in the original direction, RPF check takes place. Packet received in the reply direction, FortiGate does not perform any RPF check.
upvoted 1 times
...
JRKhan
1 month, 3 weeks ago
Selected Answer: AD
RPF is done on the first packet of the session and not on the reply. It protects the fortigate and network from IP spoofing attacks.
upvoted 1 times
...
s4mu3l007
2 months, 1 week ago
A and D are the ans
upvoted 1 times
...
felixliao
2 months, 1 week ago
Selected Answer: AD
Study guide 7.4
upvoted 1 times
...
marcovinicius4
2 months, 1 week ago
Selected Answer: AD
A and D
upvoted 1 times
...
3101a6a
2 months, 3 weeks ago
Selected Answer: AD
Study guide 7.4 Page 86 "FortiGate performs an RPF check only on the first packet of a new session. That is, after the first packet passes the RPF check and FortiGate accepts the session, FortiGate doesn’t perform any additional RPF checks on that session."
upvoted 1 times
...
ShrekAlmighty
4 months ago
Selected Answer: BD
RPF (Reverse Path Forwarding) check is not performed on the first sent packet of a new session. Instead, it is performed on the first reply packet.
upvoted 3 times
ThomasG7
2 months ago
I think Shrek is right.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago