New Year Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Fortinet Fortinet Network Security Expert NSE4_FGT_AD-7.6 Questions and answers with CertsForce

Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
Questions # 1:

Which statement correctly describes NetAPI polling mode for the FSSO collector agent?

Options:

A.

The collector agent uses a Windows API to query DCs for user logins.


B.

The NetSessionEnum function is used to track user logouts.


C.

NetAPI polling can increase bandwidth usage in large networks.


D.

The collector agent must search Windows application event logs.


Expert Solution
Questions # 2:

Refer to the exhibit.

Question # 2

Based on the routing table shown in the exhibit, which two statements are true? (Choose two.)

Options:

A.

A packet with the source IP address 10.0.13.10 arriving on port2 is allowed if strict RPF is disabled.


B.

A packet with the source IP address 10.100.110.10 arriving on port2 is allowed if strict RPF is enabled.


C.

A packet with the source IP address 10.100.110.10 arriving on port3 is allowed if strict RPF is disabled.


D.

A packet with the source IP address 10.10.10.10 arriving on port2 is allowed if strict RPF is enabled.


Expert Solution
Questions # 3:

Refer to the exhibits.

Question # 3

Question # 3

Question # 3

A web filter profile configuration and firewall policy configuration are shown.

You are trying to access www. facebook.com, but you are redirected to a FortiGuard web filtering block page.

Based on the exhibits, what is the possible cause of the issue?

Options:

A.

The web rating override configuration is incorrect.


B.

The web filter profile feature set is configured incorrectly.


C.

The firewall policy inspection mode is incorrect.


D.

For www. facebook. com. the URL filter action is incorrect.


Expert Solution
Questions # 4:

Refer to the exhibit.

Question # 4

Based on this partial configuration, what are the two possible outcomes when FortiGate enters conserve mode? (Choose two.)

Options:

A.

FortiGate drops new sessions requiring inspection.


B.

Administrators must restart FortiGate to allow new sessions.


C.

Administrators cannot change the configuration.


D.

FortiGate skips quarantine actions.


Expert Solution
Questions # 5:

Refer to the exhibit.

Question # 5

A network administrator is troubleshooting an IPsec tunnel between two FortiGate devices. The administrator has determined that phase 1 status is up, but phase 2 fails to come up.

Based on the phase 2 configuration shown in the exhibit, which two configuration changes will bring phase 2 up? (Choose two.)

Options:

A.

On BR1-FGT, set Remote Address to 10.0.11.0/255.255.255.0.


B.

On HQ-NGFW. enable Diffie-Hellman Group 2.


C.

On BR1-FGT. set Seconds to 43200


D.

On HQ-NGFW. set Encryption to AES256.


Expert Solution
Questions # 6:

Refer to the exhibits.

Question # 6

Question # 6

Question # 6

A diagram of a FortiGate device connected to the network VIP object and firewall policy configurations are shown.

The WAN (port2) interface has the IP address

100.65.0.101/24.

The LAN (port4) interface has the IP address

10.0.11.254/24.

If the host 100.65.1.111 sends a TCP SYN packet on port 443 to 100.65.0.200. what will the source address, destination address, and destination port of the packet be at the time FortiGate forwards the packet to the destination?

Options:

A.

10.0.11.254, 100.65.0.200. and 443, respectively


B.

10.0.11.254, 10.0.15.50, and 4443. respectively


C.

100.65.1. ill, 10.0.11.50, and 4443. respectively


D.

100.65.1.111, 10.0.11.50. and 443. respectively


Expert Solution
Questions # 7:

Refer to the exhibits.

Question # 7

Question # 7

Question # 7

An administrator has observed the performance status outputs on an HA cluster for 55 seconds.

Which FortiGate is the primary?

Options:

A.

HQ-NGFW-1 with the parameter memory-failover-flip-timeout setting


B.

HQ-NGFW-2 with the parameter priority setting


C.

HQ-NGFW-1 with the parameter override setting


D.

HQ-NGFW-2 with the parameter memory-failover-threshold setting


Expert Solution
Questions # 8:

FortiGate is integrated with FortiAnalyzer and FortiManager.

When creating a firewall policy, which attribute must an administrator include to enhance functionality and enable log recording on FortiAnalyzer and FortiManager?

Options:

A.

Universally Unique Identifier


B.

Policy ID


C.

Sequence ID


D.

Log ID


Expert Solution
Questions # 9:

Refer to the exhibits.

Question # 9

Question # 9

The exhibits show a diagram of a FortiGate device connected to the network, as well as the IP pool configuration and firewall policy objects.

The WAN (port2) interface has the IP address

100.65.0.101/24.

The LAN (port4) interface has the IP address

10.0.11.254/24.

Which IP address will be used to source NAT (SNAT) the traffic, if the user on HQ-PC-1 (10.0.11.50) pings the IP address of BR-FGT (100.65.1.111)?

Options:

A.

100.65.0.101


B.

100.65.0.49


C.

100.65.0.149


D.

100.65.0.99


Expert Solution
Questions # 10:

Refer to the exhibit.

Question # 10

The NOC team connects to the FortiGate GUI with the NOC_Access admin profile. They request that their GUI sessions do not disconnect too early during inactivity. What must the administrator configure to answer this specific request from the NOC team?

Options:

A.

Increase the admintimeout value under config system accprofile noc Access.


B.

increase the of line value of the override idle Timeout parameter in the NOC_Access admin profile.


C.

Move NOC_Access to the top of the list to ensure all profile settings take effect.


D.

Ensure that all NOC_Access users are assigned the super_admin role to guarantee access.


Expert Solution
Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions