nse4-fgt-7-2 question 47 discussion

View all Fortinet NSE 4 - FortiOS 7.2 here
back to fortinet forum

Question 47

Refer to the exhibit.



Why did FortiGate drop the packet?

  • A. It failed the RPF check.
  • B. The next-hop IP address is unreachable.
  • C. It matched an explicitly configured firewall policy with the action DENY.
  • D. It matched the default implicit firewall policy.
Answer:

c

User Votes:
A
50%
B
50%
C
50%
D 2 votes
50%
Discussions
0 / 1000
deepz142
5 months, 3 weeks ago

i think answer is D, Policy 0 is implicit deny