{"id":21434,"date":"2026-09-25T05:13:43","date_gmt":"2026-09-25T05:13:43","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=21434"},"modified":"2026-09-25T05:13:43","modified_gmt":"2026-09-25T05:13:43","slug":"fortinet-nse4_fgt-7-0-practice-test-questions-and-exam-dumps-part-8-q141-160","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/fortinet-nse4_fgt-7-0-practice-test-questions-and-exam-dumps-part-8-q141-160\/","title":{"rendered":"Fortinet NSE4_FGT-7.0 Practice Test Questions and Exam Dumps Part 8 Q141-160"},"content":{"rendered":"<h2><b>View Full <\/b><a href=\"https:\/\/www.examlabs.com\/nse4-fgt-7-0-exam-dumps\"><b>Fortinet NSE4_FGT-7.0 Exam Dumps<\/b><\/a><b> and Practice Test Dumps<\/b><\/h2>\n<p>&nbsp;<\/p>\n<p><b>Question 141. Which FortiGate feature allows multiple internal clients to access the internet by translating their private source addresses to a public address?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Destination NAT<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Source NAT<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Policy route<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCP relay<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Source NAT<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Source NAT changes the source address of traffic as it leaves the internal network. FortiGate commonly uses source NAT to translate private client addresses to a public address when users access the internet. Depending on the configuration, the translated address may be the outgoing interface address or an address from an IP pool. Destination NAT performs the opposite type of translation for incoming services. Policy routes influence forwarding decisions, while DHCP relay forwards DHCP requests. Source NAT is therefore the appropriate mechanism for shared internet access.<\/span><\/p>\n<p><b>Question 142. An administrator wants FortiGate to authenticate users against Microsoft Active Directory through a directory protocol. Which configuration is appropriate?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> LDAP server<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> IP pool<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Traffic shaper<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Virtual IP<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. LDAP server<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">FortiGate can integrate with directory services using LDAP. When configured correctly, an LDAP server definition allows FortiGate to communicate with a directory and authenticate users or retrieve group information for identity-based access control. An IP pool provides source NAT addresses, a traffic shaper controls bandwidth, and a virtual IP performs destination NAT. LDAP is therefore the appropriate configuration when FortiGate needs to use an existing directory service for authentication and user-group-based access policies.<\/span><\/p>\n<p><b>Question 143. Which FortiGate feature can prevent users from accessing websites categorized as phishing or malware-related?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Static route<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Web Filter<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCP server<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Link aggregation<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Web Filter<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Web Filter can use FortiGuard web-rating information to classify websites and apply configured actions to categories such as phishing, malware, or other unwanted content. The administrator can configure category-based policies and apply the Web Filter profile to relevant firewall policies. Static routes control forwarding, DHCP provides network addresses, and link aggregation combines physical links. Web Filter is therefore the appropriate security feature when access to dangerous or unwanted website categories needs to be restricted.<\/span><\/p>\n<p><b>Question 144. Which FortiGate CLI command is commonly used to view the current system performance and resource usage?<\/b><\/p>\n<ol>\n<li><b><\/b> <span style=\"font-weight: 400;\">get system performance status<\/span><\/li>\n<li><b><\/b> <span style=\"font-weight: 400;\">execute ping<\/span><\/li>\n<li><b><\/b> <span style=\"font-weight: 400;\">show firewall policy<\/span><\/li>\n<li><b><\/b> <span style=\"font-weight: 400;\">diagnose sniffer packet<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. <\/b><b>get system performance status<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">get system performance status<\/span><span style=\"font-weight: 400;\"> command provides information about FortiGate system performance and resource utilization. Administrators can use performance information when investigating high CPU usage, memory consumption, session load, or other resource-related conditions. <\/span><span style=\"font-weight: 400;\">execute ping<\/span><span style=\"font-weight: 400;\"> tests connectivity, <\/span><span style=\"font-weight: 400;\">show firewall policy<\/span><span style=\"font-weight: 400;\"> displays policy configuration, and <\/span><span style=\"font-weight: 400;\">diagnose sniffer packet<\/span><span style=\"font-weight: 400;\"> provides packet-level visibility. Performance status is therefore useful when troubleshooting whether the FortiGate itself is experiencing a resource-related condition.<\/span><\/p>\n<p><b>Question 145. Which FortiGate feature can distribute traffic among multiple backend servers associated with a virtual server configuration?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Web Filter<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Server Load Balance<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCP Relay<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Static Route<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Server Load Balance<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">FortiGate virtual server functionality can provide server load balancing by distributing client connections among configured real servers. This allows multiple backend servers to provide a service behind a common virtual address and can improve availability and resource utilization. Web Filter controls website access, DHCP Relay forwards DHCP requests, and Static Route determines network forwarding. Server load balancing is therefore the appropriate functionality when incoming connections need to be distributed across multiple backend servers.<\/span><\/p>\n<p><b>Question 146. Which FortiGate feature can allow administrators to create a separate routing table and policy environment for a virtual firewall instance?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> VDOM<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> IP Pool<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Service Group<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Web Filter<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. VDOM<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A Virtual Domain, or VDOM, provides a logically independent firewall environment within a FortiGate appliance. Depending on the deployment and configuration, a VDOM can have its own interfaces, policies, routing information, and other system resources. IP pools support source NAT, service groups organize service definitions, and Web Filter controls website access. VDOMs are therefore useful when an organization needs separate routing and security environments while operating them on the same physical FortiGate platform.<\/span><\/p>\n<p><b>Question 147. Which FortiGate feature can restrict administrator access based on the source IP address of the management connection?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Trusted hosts<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Application Control<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> IPsec Phase 2<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Traffic Shaping<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Trusted hosts<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Trusted hosts can restrict where an administrator is allowed to authenticate from by specifying permitted source IP addresses or networks. This reduces the exposure of administrative interfaces because credentials cannot be used successfully from arbitrary source locations when trusted-host restrictions are enforced. Application Control manages applications, IPsec Phase 2 defines protected VPN traffic, and Traffic Shaping manages bandwidth. Trusted hosts are therefore an important access-control mechanism for limiting administrative login sources.<\/span><\/p>\n<p><b>Question 148. An administrator needs to inspect traffic to determine whether a firewall policy is receiving packets from a specific source address. Which diagnostic tool should be used?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Packet sniffer<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Configuration backup<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Firmware manager<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> User group<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Packet sniffer<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A packet sniffer provides direct visibility into packets observed by FortiGate. Administrators can apply filters based on source address, destination address, protocol, or port to determine whether the expected packets are reaching an interface. Configuration backups preserve settings, firmware management handles software updates, and user groups organize authenticated identities. A packet sniffer is therefore especially useful when troubleshooting whether traffic is actually arriving before investigating higher-level policy or security-profile behavior.<\/span><\/p>\n<p><b>Question 149. Which FortiGate routing feature allows administrators to define different forwarding behavior based on criteria such as source address and destination address?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Policy-based routing<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Web Filter<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Antivirus<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DNS Filter<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Policy-based routing<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Policy-based routing allows FortiGate to make forwarding decisions using configured traffic criteria rather than relying exclusively on the normal destination-based routing table. Criteria can include source and destination addresses and other supported attributes. This makes PBR useful for scenarios such as directing traffic from particular users or networks through a specific ISP. Web Filter, Antivirus, and DNS Filter are security inspection features and do not determine routing paths. Policy-based routing is therefore the appropriate feature for criteria-based forwarding decisions.<\/span><\/p>\n<p><b>Question 150. Which FortiGate security profile is responsible for controlling applications such as peer-to-peer services, messaging applications, or streaming platforms?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Web Filter<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Application Control<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Antivirus<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DNS Filter<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Application Control<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Application Control identifies network applications and allows administrators to apply actions to them. It can be configured to allow, monitor, or block applications and application categories according to organizational requirements. Web Filter focuses primarily on websites and web categories, Antivirus detects malicious content, and DNS Filter evaluates DNS requests and domains. Application Control is therefore the appropriate security profile when administrators need to control specific applications such as peer-to-peer software, messaging platforms, or streaming services.<\/span><\/p>\n<p><b>Question 151. Which FortiGate feature can provide encrypted communication between two fixed network locations over the internet?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Site-to-site IPsec VPN<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Web Filter<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCP Relay<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Traffic Shaper<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Site-to-site IPsec VPN<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A site-to-site IPsec VPN creates an encrypted tunnel between two network locations, allowing private traffic to traverse an untrusted network such as the internet. The tunnel uses IPsec and IKE negotiation to establish secure communications between the VPN peers. Web Filter controls web access, DHCP Relay forwards DHCP messages, and Traffic Shaper controls bandwidth. Site-to-site IPsec VPN is therefore the appropriate solution when two fixed networks need secure connectivity over a public network.<\/span><\/p>\n<p><b>Question 152. Which FortiGate component can store information about active TCP and UDP connections passing through the firewall?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Session table<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Web Filter<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> FortiGuard category database<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCP reservation<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Session table<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The FortiGate session table maintains state information about active traffic sessions. It can contain details associated with connections such as source and destination addresses, ports, interfaces, policy information, and session state. This information is important for stateful firewall processing and troubleshooting. Web Filter controls web access, FortiGuard categorization provides classification information, and DHCP reservations manage predictable address assignment. The session table is therefore the component that tracks active network connections through the FortiGate.<\/span><\/p>\n<p><b>Question 153. An administrator wants to allow users to access a web application only from 9:00 AM to 5:00 PM on weekdays. Which FortiGate feature should be used?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> IP Pool<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Schedule<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Virtual IP<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Address Group<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Schedule<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A firewall policy schedule can define the days and times during which a policy is active. A recurring schedule can be configured for weekdays between the required start and end times, and the schedule can then be associated with the policy controlling access to the web application. IP pools provide source NAT addresses, virtual IPs provide destination NAT, and address groups organize network objects. A schedule is therefore the appropriate feature for enforcing time-based access restrictions.<\/span><\/p>\n<p><b>Question 154. Which FortiGate feature can identify a user&#8217;s group membership after successful authentication and use it in access policies?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> User group<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> IP pool<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Static route<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Traffic shaper<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. User group<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">User groups allow FortiGate to organize authenticated users and, depending on the configured authentication source, use group membership for access control. This is especially useful when organizations need different network permissions for different departments or roles. IP pools provide NAT addresses, static routes determine packet forwarding, and traffic shapers manage bandwidth. User groups are therefore appropriate when firewall policies need to distinguish users based on their authenticated directory or local group membership.<\/span><\/p>\n<p><b>Question 155. Which FortiGate feature can detect and block malicious traffic using signatures maintained by FortiGuard?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCP Server<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> IPS<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Interface Zone<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Static Route<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. IPS<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">FortiGate IPS uses intrusion-prevention signatures and related security intelligence to identify known malicious or suspicious traffic patterns. When a configured IPS profile detects matching traffic, it can take actions such as blocking or logging the event. DHCP Server provides network configuration, Interface Zones group interfaces, and Static Routes control forwarding. IPS is therefore the FortiGate security feature intended to identify and prevent recognized network attacks using signature-based inspection.<\/span><\/p>\n<p><b>Question 156. Which FortiGate feature allows an administrator to define a service using a specific TCP port that is not included in the standard service objects?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Custom service<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Address group<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> VDOM<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Policy route<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Custom service<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A custom service object allows administrators to define protocol and port combinations that are not represented by the default FortiGate service objects. The custom service can then be referenced by firewall policies to control access to the application using that non-standard port. Address groups organize network addresses, VDOMs provide logical firewall separation, and policy routes control forwarding paths. A custom service is therefore the correct configuration when a specific TCP or UDP port must be explicitly defined for policy matching.<\/span><\/p>\n<p><b>Question 157. Which FortiGate feature can send security and traffic logs to a centralized Fortinet logging appliance?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> FortiAnalyzer integration<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCP relay<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> IP pool<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Link aggregation<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. FortiAnalyzer integration<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">FortiAnalyzer integration allows FortiGate to forward logs to a centralized Fortinet platform for storage, analysis, reporting, and investigation. Centralized logging is useful when administrators need visibility across multiple FortiGate devices or require historical security and traffic information. DHCP relay forwards DHCP messages, IP pools support source NAT, and link aggregation combines physical interfaces. FortiAnalyzer integration is therefore appropriate when FortiGate logs need to be centrally collected and analyzed within a Fortinet logging environment.<\/span><\/p>\n<p><b>Question 158. Which FortiGate feature can provide a stable logical address for routing protocols or management without depending directly on a physical interface?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Loopback interface<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Virtual IP<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> IP pool<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCP scope<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Loopback interface<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A loopback interface is a logical interface that is not directly tied to the operational state of a particular physical port. Its stable address can be useful for routing protocols, management, monitoring, or other services that benefit from a consistent logical endpoint. A virtual IP is used for address translation, an IP pool supports source NAT, and a DHCP scope assigns addresses to clients. A loopback interface is therefore suitable when a persistent logical address is required.<\/span><\/p>\n<p><b>Question 159. Which FortiGate configuration determines whether an administrator can access the GUI through HTTPS on a particular interface?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Administrative access settings<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Application Control<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> IPsec Phase 2<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Traffic Shaping<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Administrative access settings<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">FortiGate interfaces can be configured with administrative access options that determine which management protocols are available through those interfaces. HTTPS can be enabled to provide secure GUI access, while other management services such as SSH can be controlled separately. Application Control, IPsec Phase 2, and Traffic Shaping serve different purposes. Administrative access settings are therefore the relevant configuration when determining whether the FortiGate GUI can be reached through HTTPS on a particular interface.<\/span><\/p>\n<p><b>Question 160. An administrator suspects that FortiGate is dropping traffic because no firewall policy matches the packet. Which behavior should the administrator expect?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> The traffic is automatically accepted.<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> The traffic is translated using the default IP pool.<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> The traffic is denied by the implicit policy.<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> The traffic is automatically routed through every available interface.<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. The traffic is denied by the implicit policy.<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">FortiGate uses an implicit deny behavior for traffic that does not match an applicable firewall policy that permits it. This means administrators must explicitly configure policies for traffic that should be allowed. Unmatched traffic is not automatically accepted, translated using an arbitrary IP pool, or forwarded through every available interface. When troubleshooting a dropped packet, administrators should therefore verify the source, destination, interfaces, service, schedule, and policy order to determine why no intended allow policy matched the traffic.<\/span><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full Fortinet NSE4_FGT-7.0 Exam Dumps and Practice Test Dumps &nbsp; Question 141. Which FortiGate feature allows multiple internal clients to access the internet by translating their private source addresses to a public address? Destination NAT Source NAT Policy route DHCP relay Correct Answer: 2. Source NAT Explanation :- Source NAT changes the source address [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/21434"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=21434"}],"version-history":[{"count":1,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/21434\/revisions"}],"predecessor-version":[{"id":21435,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/21434\/revisions\/21435"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=21434"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=21434"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=21434"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}