View all questions & answers for the NSE 5 - FortiSwitch 7.6 Administrator Exam Materials exam


Question 56 Discussion

You enable Dynamic Host Configuration Protocol (DHCP) snooping on a VLAN and configure a FortiSwitch port as trusted for DHCP snooping. What additional step is required to configure the port as trusted for Dynamic ARP Inspection (DAI)? (Choose one answer)

  • A. Manually set the port as trusted for DAI through the CLI.
  • B. DAI implicitly trusts the port.
  • C. Enable IP Source Guard (IPSG) on the port.
  • D. Enable static MAC learning on the port.
Correct Answer: B

Brave-Dump Clients Votes

B 100%

Comments



javaughn Bryan 2025-12-18 17:49:58

Selected Answers: B


B is correct.

You enable DAI on a VLAN and then configure a port as trusted or untrusted for DAI. DAI performs ARP inspection on ports that have been configured as untrusted for DAI and skips inspection on ports that have been configured as trusted in either DHCP snooping or DAI. DAI implicitly trusts ports configured as trusted in DHCP snooping.


javaughn Bryan 2025-12-18 22:37:32

Selected Answers: B


PAGE: 201 | FORTISWITCH 7.6 ADMIN GUIDE