FortiGate offers two ways to define source NAT. The default is per-policy NAT, where you tick NAT on each firewall policy and choose the outgoing interface address or an IP pool. The alternative is central SNAT, which moves all source-NAT decisions out of the individual policies and into one dedicated, ordered table. Knowing why and when to switch is the exam's focus.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 5 more sections, 4 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.