Fortinet NSE4 Training - Reverse Path Failure (RPF)

preview_player
Показать описание
Hey there, are you trying to break into cybersecurity but feel like you don't know where to start? Or do you feel like your working hard but its not getting you in?

My name is Chris Ray and I help people break into Cybersecurity by focusing on all the skills needed to land your first cybersec job (or move up!).

Subscribe to my channel, I post videos weekly on a variety of topics I am certain will level-up your cybersecurity game!

Reverse Path filter or Reverse Path Failure (aka RPF) can be a tricky concept to grasp. In this video I provide some examples with short, concise explanations that will help you understand what RPF is and why we use it.

Check out my socials!

Рекомендации по теме
Комментарии
Автор

I'm glad you went with a diagram because I think it lands so much better than I can imagine a demo would. I got a question on the NSE4 on RPF and yours was the first video that made sense.

TomWhi
Автор

man... do you have any idea how i've been looking for a clear explanation. So many folks on here (youTube) make it difficult to understand....geez. thank you so much.

RedEyeCoding
Автор

Excellent, also I learned feasible ignores the distance metric but checks priority.

darkcnotion
Автор

Wow. This was good, Chris! Very simple explanation. Thank you.

robertchism
Автор

Thank you for sharing the content, it was very easy to understand after your explanation.

eduardodacunha
Автор

A few people have asked how it works with a default route. In feasible/loose mode it will be no different for a default route. The default route counts as a valid route. Source: NSE4 study guide.

networkengineerblogs
Автор

The most easy explanation on RPF ever, thank you very much sir!
This helps with refreshing nse4 knowlegde for NSE7 cert :)

GGoblin
Автор

Chris, i guess there is some misconception as RPF checking is all about checking source IP address in routing table and not Destinaion IP address. Here is the study guide RPF notes.. "The reason behind the RPF check is that if FortiGate receives a packet on an interface, and FortiGate doesn’t have a route to the packet source address through the incoming interface, then the source address of the packet could have been forged, or the packet was routed incorrectly. In either case, you want to drop that unexpected packet, so it doesn’t enter your network."

ravichande
Автор

Thanks for the easy and clear explanation!

kmcgaughmohr
Автор

Fantastic Vid! A clear and concise explanation... this really helped me understand RPF. Thanks Chris.

anthonywainman
Автор

Another great video. Thank you, Chris!

saifemran
Автор

Great explanation. Just what I was hunting around for. I wonder though, what impact does a default route have route matching?

dermyan
Автор

Very easy to understand .. Great explanation.

deepakkhadka
Автор

Hi Chris, my doubt is when a default route to internet like Destination=0.0.0.0/0 and exit interface wan .How the RPF will work here, for example the fortigate have a default route to internet like this

set status enable
set dst 0.0.0.0 0.0.0.0
set gateway 218.208.110.1
set distance 10
set weight 0
set priority 0
set device "wan2"

ajeesh
Автор

good video. pls make more for the lab setup used in previous video's. also are there books you used to pass the exam?

shomrshabbos
Автор

so in this case, those 3 address at the top act as source or destination?

arthurfaizal
Автор

But always there is a default route, so feasible will never stop no spoof, ???

skitheworld
Автор

Can you recommend a good book for the ns4?

ale
Автор

Not clear or helpful and wastes too much time at the beginning .

anonymoususer