NSE 6 – FortiWeb 5.6/6.0 — Question 5
How does your FortiWeb configuration differ if the FortiWeb is upstream of the SNAT device instead of downstream of the SNAT device?
Answer options
- A. You must enable the "Use" X-Forwarded-For: option.
- B. FortiWeb must be set for Transparent Mode
- C. No special configuration required
- D. You must enable "Add" X-Forwarded-For: instead of the "Use" X-Forwarded-For: option.
Correct answer: A
Explanation
The correct answer is A because when FortiWeb is upstream of the SNAT device, you need to enable the 'Use' X-Forwarded-For: option to properly identify client IP addresses. Options B and C are incorrect as they do not address the requirement for X-Forwarded-For configuration, and option D is wrong since it suggests an alternative that is not applicable in this scenario.