In policy-based NGFW mode, you allow applications and URL categories to be used directly in security policies, without requiring web filter or application control profiles.
In policy-based mode: Central NAT is always enabled.
https://docs.fortinet.com/document/fortigate/6.4.1/administration-guide/978598/profile-based-ngfw-vs-policy-based-ngfw
C&D
A incorrect, "In policy-based mode:
Central NAT is always enabled. If no Central SNAT policy exists, you must create one."
https://docs.fortinet.com/document/fortigate/6.2.10/cookbook/978598/profile-based-ngfw-vs-policy-based-ngfw
B is incorrect because you can have multiple vdom with multi mode
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Helber
Highly Voted 3 years, 9 months agoChuckC
Most Recent 2 years, 9 months agoChuckC
2 years, 9 months agoChuckC
2 years, 9 months agojuanK1982
3 years agoGycu
3 years, 1 month agoDraegerr
3 years, 1 month agohippo2048
3 years, 1 month agoCorynth
3 years, 1 month agoCorynth
3 years, 1 month agoNazdak
3 years, 3 months agoThomas_2020
3 years, 4 months agodamcol
3 years, 4 months agoGape4
3 years, 9 months agophototrait
3 years, 10 months ago