Big Halloween Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Fortinet Fortinet Network Security Expert FCP_FGT_AD-7.6 Questions and answers with CertsForce

Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions
Questions # 11:

Which three statements explain a flow-based antivirus profile? (Choose three.)

Options:

A.

FortiGate buffers the whole file but transmits to the client at the same time.


B.

Flow-based inspection uses a hybrid of the scanning modes available in proxy-based inspection.


C.

If a virus is detected, the last packet is delivered to the client.


D.

Flow-based inspection optimizes performance compared to proxy-based inspection.


E.

The IPS engine handles the process as a standalone.


Expert Solution
Questions # 12:

Refer to the exhibit.

Question # 12

What would be the impact of these settings on the Server certificate SNI check configuration on FortiGate?

Options:

A.

FortiGate will accept and use the CN in the server certificate for URL filtering if the SNI does not match the CN or SAN fields.


B.

FortiGate will accept the connection with a warning if the SNI does not match the CN or SAN fields.


C.

FortiGate will close the connection if the SNI does not match the CN or SAN fields.


D.

FortiGate will close the connection if the SNI does not match the CN and SAN fields


Expert Solution
Questions # 13:

Refer to the exhibits.

Question # 13

Based on the current HA status, an administrator updates the override and priority parameters on HQ-NGFW-1 and HQ-NGFW-2 as shown in the exhibit.

What would be the expected outcome in the HA cluster?

Options:

A.

HQ-NGFW-1 will synchronize the override disable setting with HQ-NGFW-2.


B.

HQ-NGFW-2 will take over as the primary because it has the override enable setting and higher priority than HQ-NGFW-1.


C.

HQ-NGFW-1 will remain the primary because HQ-NGFW-2 has lower priority.


D.

The HA cluster will become out of sync because the override setting must match on all HA members.


Expert Solution
Questions # 14:

A network administrator is reviewing firewall policies in both Interface Pair View and By Sequence View. The policies appear in a different order in each view.

Why is the policy order different in these two views?

Options:

A.

Policies in Interface Pair View are prioritized by security levels, while By Sequence View strictly follows the administrator’s manual ordering.


B.

By Sequence View groups policies based on rule priority, while Interface Pair View always follows the order of traffic logs.


C.

The firewall dynamically reorders policies in Interface Pair View based on recent traffic patterns, but By Sequence View remains static.


D.

Interface Pair View sorts policies based on matching interfaces, while By Sequence View shows the actual processing order of rules.


Expert Solution
Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions