NSE 6 – FortiSwitch 7.2 — Question 28
How does FortiSwitch perform actions on ingress and egress traffic using the access control list (ACL)?
Answer options
- A. Only high-end FortiSwitch models support ACL.
- B. ACL can be used only at the prelookup stage in the traffic processing pipeline.
- C. Classifiers enable matching traffic based only on the VLAN ID.
- D. FortiSwitch checks ACL policies only from top to bottom.
Correct answer: D
Explanation
The correct answer is D because FortiSwitch processes ACL policies in a top-to-bottom manner, ensuring that the first matching rule is applied. The other options are incorrect as they either misrepresent the capabilities of FortiSwitch models, restrict ACL usage to a specific phase, or incorrectly limit traffic matching criteria.