NSE 4 – FortiGate 6.2 — Question 81

How does FortiGate select the central SNAT policy that is applied to a TCP session?

Answer options

Correct answer: A

Explanation

The correct answer is A because FortiGate processes the central SNAT policies from top to bottom and applies the first one that matches. Options B and C are incorrect as they specify reliance on interface or firewall policy configurations rather than the sequence of matching policies. Option D is also incorrect, as SNAT policies are not selected based on priority but rather on their order of appearance.