Question 1
Question
are the terms used to refer to the mechanism that allows IPv6 addressed hosts to communicate with IPv4 addressed hosts and the reverse.
Question 2
Question
Without the mechanism NAT64 and 46, an IPv6 node on a network, such as a corporate LAN, would not be able to communicate with a website that was in an IPv4-only environment, and IPv4 environments would not be able to connect to IPv6 networks.
Question 3
Question
is NAT between two IPv6 networks
Question 4
Question
What is NAT used for?
Question 5
Question
Which statement about NAT66 is true?
Question 6
Question
are a mechanism that allow sessions leaving the FortiGate firewall to use NAT. Defines a single IP address or a range of IP addresses to be used as the source address for the duration of the session. These assigned addresses will be used instead of the IP address assigned to that FortiGate interface.
Question 7
Question
There are four types of IP pools that can be configured on the FortiGate firewall:
Answer
-
Overload
-
One-to-one
-
Fixed port range
-
Port block allocation
-
Dynamic
-
Static
Question 8
Question
What is the default IP pool type?
Answer
-
a. One-to-one
-
b. Overload
Question 9
Question
Which of the following is the default VIP type?
Answer
-
a. static-nat
-
b. load-balance
Question 10
Question
Which one of the following statements is true?
Question 11
Question
What happens if NAT is enabled on a firewall policy and there is no matching central SNAT policy or no central SNAT policy configured?
Question 12
Question
Which method would be used for advanced application tracking and control?
Question 13
Question
Which profile is an example of application layer gateway?
Answer
-
a. WAF profile
-
b. VOIP profile
Question 14
Question
If session diagnostic output indicates that a TCP protocol state is proto_state=01, which of the following statements is true?
Question 15
Question
An administrator wants to check the total number of TCP sessions for an IP pool named INTERNAL. Which one of the following CLI commands should the administrator use?
Question 16
Question
Which of the following statements about NAT port exhaustion is true?
Question 17
Question
[blank_start]NAT[blank_end] : Changes the IP layer address of a packet
- Some protocols, like SIP, have addresses at the application layer, requiring session helpers or proxies
-Source NAT (SNAT)
-Destination NAT (DNAT)
[blank_start]PAT[blank_end] : Changes the IP layer port number of a packet
[blank_start]NAT64 and NAT46[blank_end] : mechanism that allows IPv6 addressed hosts to communicate with IPv4 addressed hosts and the reverse
-[blank_start]NAT66[blank_end] : NAT between two IPv6 networks
Answer
-
NAT
-
PAT
-
NAT64 and NAT46
-
NAT66
Question 18
Question
When more advanced application tracking and control is required
Question 19
Question
Listen [blank_start]9[blank_end]
Last_ACK [blank_start]8[blank_end]
Close_Wait [blank_start]7[blank_end]
Close [blank_start]6[blank_end]
Time_Wait [blank_start]5[blank_end]
Fin_Wait [blank_start]4[blank_end]
Syn & Syn/ACK [blank_start]3[blank_end]
Syn_Sent [blank_start]2[blank_end]
Established [blank_start]1[blank_end]
None [blank_start]0[blank_end]
Question 20
Question
Even though UDP is stateless, FortiGate still uses two session state values: