Pregunta 1
Pregunta
is how FortiGate in NAT mode decides where to send the packets that it receives and the packets that it generates. All network devices that perform routing have a routing table. A routing table contains a series of rules. Each rule specifies the next hop, which may or may not be the final destination of the packet. Each routing hop in the routed path requires a routing table lookup to pass the packet along until it reaches the final destination.
When routing packets, FortiGate will first find a matching route in its list of routes based on the packet's destination address. When performing this match, FortiGate evaluates the entire routing table to find the most specific match before selecting a route. If FortiGate finds multiple matches, it uses various route attributes to determine the best route. Proper routing configuration is important. If routes are misconfigured, packets will not reach their destination and will be lost.
Respuesta
-
IP-Layer Routing
-
IP-Subnet Routing
-
IP-Routing Layer
Pregunta 2
Pregunta
For each session, FortiGate performs two routing lookups:
Pregunta 3
Pregunta
FortiGate writes the routing information to its session table. Subsequent packets are routed according to the session table, not the routing table.
So, all packets that belong to the same session follow the same path, even after a change in the static routes.
However, there is an exception to this rule: if there is a change in the routing table, FortiGate removes the route information for the session table, and then it makes additional routing table lookups to rebuild this information.
Respuesta
-
Route Lookup
-
IP-Layer Routing
-
Routing
Pregunta 4
Pregunta
Routing information is written to the session table
Pregunta 5
Pregunta
Dynamic routes: Fortigate Supports (select 4)
Respuesta
-
Routing information protocol (RIP)
-
Open Shortest Path First (OSPF)
-
Border Gateway Protocol (BGP)
-
Intermediate System to Intermediate System (IS-IS)
-
Enhanced Interior Gateway Routing Protocol (EIGRP)
Pregunta 6
Pregunta
Policy routes are in the same routing table by Fortigate, and have precedence over the regular routing table.
Pregunta 7
Pregunta 8
Pregunta
Which configured routes aren‘t displayed in the routing table monitor?
Respuesta
-
Inactive routes
If an interface is down, or FortiGate does not have layer 2 connectivity to a subnet, that route is considered inactive, and will not be added to the routing table.
Policy routes are viewed in a separate table. ISDB routes are also added as policy routes in the policy route monitor.
-
Directly connected subnets
When a subnet is assigned to FortiGate's interface, a route to the subnet is automatically added with Connected shown in the Type column. There has to be layer 2 connectivity to the subnets for their respective routes to be added to the routing table. This means that if an interface is down, or there is no link established, the route will not be added.
Dynamic routes
On larger networks, your FortiGate may receive routes from other routers, through protocols such as BGP or OSPF. FortiGate will add these routes to the routing table with the respective routing protocol's name under the Type column.
Pregunta 9
Pregunta
Each route in the routing table has the following attributes: (Select 6)
Respuesta
-
Network
-
Gateway IP
-
Interfaces
-
DIstance
-
Metric
-
Priority
-
Policy id
-
Routing protocol
Pregunta 10
Pregunta
[blank_start]0[blank_end] - directly connected
[blank_start]5[blank_end] - DHCP gateway
[blank_start]20[blank_end] - external BGP (EBGP) routes
[blank_start]200[blank_end] - internal BGP (IBGP) routes
[blank_start]110[blank_end] - OSPF routes
[blank_start]120[blank_end] - RIP routes
[blank_start]10[blank_end] - static routes
Pregunta 11
Pregunta
If multiple dynamic routes have the same distance, then metric is used to break the tie. The route with the lowest metric is chosen.
Pregunta 12
Pregunta
Used by static routes to dermine the best route to a destination, when the distance is the same.
Pregunta 13
Pregunta
Priority route attibutes does not appear on the GUI routing monitor
Pregunta 14
Pregunta
If multiple routes to the same destination share the same distance, metric, and priority, they are all considered the best candidate. If the routes are static, OSPF, or EGP, FortiGate load balances the traffic across all routes.
Pregunta 15
Respuesta
-
Equal cost multi-path
-
Equal cost multi-port
Pregunta 16
Pregunta
ECMP Methods (Select 4)
Respuesta
-
Source IP
-
Source-destination IP
-
Weighted
-
Usage (Spillover)
-
Per IP
-
Source Network