View all questions & answers for the NSE 5 - FortiSwitch 7.6 Administrator Exam Materials exam


Question 13 Discussion

When Dynamic Host Configuration Protocol (DHCP) snooping is enabled on a FortiSwitch VLAN, which two statements are true? (Choose two answers)

  • A. DHCP replies are accepted only on trusted ports.
  • B. DHCP snooping blocks all unicast traffic.
  • C. Option 82 can be inserted into DHCP requests.
  • D. DHCP requests are dropped if sent from trusted ports.
Correct Answer: A,C

Brave-Dump Clients Votes

AC 100%

Comments



javaughn Bryan 2025-12-08 20:09:42

Selected Answers: A, C


A&C are the only correct choices.

DHCP snooping protects the DHCP service in your network from rogue DHCP servers and information leaks by inspecting DHCP traffic and ensuring that: DHCP replies-OFFER AND ACK packets-are accepted on trusted ports only. In addition to snooping DHCP traffic and dropping replies on untrusted ports, FortiSwitch can also insert option 82 to DHCP requests made on a VLAN.
PAGE: 195&196 | FORTISWITCH 7.6 ADMIN GUIDE