Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam NSE4_FGT-7.2 topic 1 question 2 discussion

Actual exam question from Fortinet's NSE4_FGT-7.2
Question #: 2
Topic #: 1
[All NSE4_FGT-7.2 Questions]

Refer to the exhibits.
The exhibits show the firewall policies and the objects used in the firewall policies.
The administrator is using the Policy Lookup feature and has entered the search criteria shown in the exhibit.


Which policy will be highlighted, based on the input criteria?

  • A. Policy with ID 4.
  • B. Policy with ID 5.
  • C. Policies with ID 2 and 3.
  • D. Policy with ID 4.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
shadow2020
Highly Voted 1 year, 6 months ago
there are 3 rules related to port3 and two rules source LOCAL_CLIENT this would leave us with Rule 1 & 5 Rule one Service is = ULL_UDP Rule five = Internet Services Destination port we are looking for is 443 (usually this is TCP) So it had to be PID5
upvoted 23 times
dacmick
12 months ago
right answer, wrong rationale, look at Slash_JM's reasoning
upvoted 2 times
...
...
Slash_JM
Highly Voted 1 year ago
Selected Answer: B
We are looking for a policy that will allow or deny traffic from the source interface Port3 and source IP address 10.1.1.10 (LOCAL_CLIENT) to facebook.com TCP port 443 (HTTPS). There are only two policies that will match this traffic, policy ID 2 and 5. In FortiGate, firewall policies are evaluated from top to bottom. This means that the first policy that matches the traffic is applied, and subsequent policies are not evaluated. Based on the Policy Lookup criteria, Policy ID 5 will be highlighted.
upvoted 18 times
...
ndrdb
Most Recent 1 month, 1 week ago
Awnser is B - policy with ID 5 It cannot be policy ID 4 because it uses port 4, and the lookup specifies port 3 It cannot be policy ID 3 either because it uses ALL_UDP instead of TCP 443 which is used for internet services
upvoted 1 times
...
DSB2022
1 month, 2 weeks ago
Selected Answer: B
It's B, of course.
upvoted 1 times
...
Cisco_SE_765
3 months ago
The correct one is B
upvoted 1 times
...
learner2024
3 months, 3 weeks ago
Selected Answer: B
B. As explanied by Slash_JM
upvoted 1 times
...
Jere2001
4 months, 2 weeks ago
Selected Answer: B
The answer is definitely "B"
upvoted 1 times
...
Integratto
5 months, 2 weeks ago
Selected Answer: B
Resposta: B
upvoted 1 times
...
MAUROBTA
5 months, 2 weeks ago
La correcta es la B
upvoted 1 times
...
ama6
5 months, 2 weeks ago
Got 8 new questions will post them tomorrow evening did exam yesterday fortinet is changing the exams like cisco now
upvoted 6 times
...
znznzn219
7 months, 3 weeks ago
Selected Answer: B
Correct
upvoted 1 times
...
AMK2ENG
8 months, 2 weeks ago
B. Policy with ID 5.
upvoted 1 times
...
SpikeDad
9 months, 3 weeks ago
I configured this up on a 60D and it matched ID5. BTW, there is no service called ULL_UDP, obviously a typo, should be ALL_UDP, which excludes them immediately
upvoted 1 times
...
TiagoFigur
9 months, 3 weeks ago
Selected Answer: B
A resposta certa é a letra B.
upvoted 1 times
...
eroman220
10 months ago
B for sure
upvoted 1 times
...
Ygrec
10 months, 3 weeks ago
B. POLICY ID 5 for sure.
upvoted 1 times
...
Possa
11 months, 3 weeks ago
Selected Answer: B
Unica Politica que sai da Porta 3 com destino ao facebook é a opção 3 e 5 Mas a opção 3 Não tem https
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...