exam questions

Exam NSE4_FGT-6.0 All Questions

View all questions & answers for the NSE4_FGT-6.0 exam

Exam NSE4_FGT-6.0 topic 1 question 82 discussion

Actual exam question from Fortinet's NSE4_FGT-6.0
Question #: 82
Topic #: 1
[All NSE4_FGT-6.0 Questions]

Which of the following statements about central NAT are true? (Choose two.)

  • A. IP tool references must be removed from existing firewall policies before enabling central NAT.
  • B. Central NAT can be enabled or disabled from the CLI only.
  • C. Source NAT, using central NAT, requires at least one central SNAT policy.
  • D. Destination NAT, using central NAT, requires a VIP object as the destination address in a firewall.
Show Suggested Answer Hide Answer
Suggested Answer: AB 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
UIssuu
2 years, 8 months ago
A and C is true here, we can enable Central Nat using GUI and CLI - verified in real fortigate 6.9.
upvoted 2 times
...
ramzie
4 years, 6 months ago
Answer is A&b
upvoted 2 times
...
kamranbashir_engr
4 years, 9 months ago
Hi, Did anyone take the exam recently? Are the questions valid for NSE4-6.2 exam? I will take my exam next week.
upvoted 2 times
Humungus
4 years, 8 months ago
Yes. It applies to 6.2 too.
upvoted 1 times
...
...
Rondo
4 years, 9 months ago
A & B. When the central nat is enabled from the cli the Central SNAT and the DNAT & Virtual IPS become available in the Policy & Objects side menu. Also you must remove the VIP and IP Pool references from existing policies otherwise it will give you an error when trying to activate
upvoted 2 times
...
Levis
4 years, 10 months ago
A and C, central snat is a GUI button as well. under Sytem --> Settings., so B is incorrect.
upvoted 2 times
Clicky
4 years, 5 months ago
Central Snat on GUI is verified on 6.4, not sure in 6.2
upvoted 1 times
Ctnroger
4 years, 4 months ago
In 6.2.4 it avaliable from the gui
upvoted 1 times
...
...
...
Levis
4 years, 10 months ago
a and B is correct sorry
upvoted 2 times
...
chameleon_eh
4 years, 10 months ago
FortiGate_Security_6.2_Study_Guide-Online (Page 164). The correct answers are A and B.
upvoted 2 times
...
Levis
4 years, 10 months ago
A and C
upvoted 1 times
Mohammad_Rummaneh
4 years, 10 months ago
it should be A & B https://help.fortinet.com/fos50hlp/54/Content/FortiOS/fortigate-firewall-52/Firewall%20Policies/Central%20SNAT.htm Central NAT is disabled by default.To toggle the feature on or off, use the following commands: config system settings set central-nat [enable | disable] end
upvoted 4 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago