Weekend Certification Special Limited Time 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: CFsave75

Pass the Fortinet NSE 6 Network Security Specialist NSE6_FNC_AD-7.6 Questions and answers with CertsForce

Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions
Questions # 11:

An administrator wants to use FortiNAC-F to prevent internal engineers from accessing specific websites as defined in web filter categories on FortiGate. In addition to a security trigger and associated action, which configuration must also be defined on FortiNAC-F?

Options:

A.

A compliance policy


B.

A firewall policy


C.

A user/host profile


D.

A profiling method


Expert Solution
Questions # 12:

An organization has FortiNAC-F deployed and is using Layer 3 isolation networks across multiple sites with firewalls. At a minimum, which three protocols must be allowed between the isolation networks and FortiNAC-F? (Choose three.)

Options:

A.

DDNS


B.

NTP


C.

HTTP/HTTPS


D.

DNS


E.

DHCP


Expert Solution
Questions # 13:

While discovering network infrastructure devices, a switch appears in the inventory topology with a question mark (?) on the icon. What would cause this?

Options:

A.

The wrong SNMP community string was entered during discovery.


B.

The SNMP ObjectlD is not recognized by FortiNAC-F.


C.

A read-only SNMP community siring was used.


D.

SNMP is not enabled on the switch.


Expert Solution
Questions # 14:

A user was attempting to register their host through the registration captive portal. After successfully registering, the host remained in the registration VLAN. Which two conditions would cause this behavior? (Choose two.)

Options:

A.

The wrong agent s installed.


B.

There is no agent installed on the host.


C.

The port default VLAN is the same as the Registration VLAN.


D.

There is another unregistered host on the same port


Expert Solution
Questions # 15:

During the testing of a newly modeled infrastructure switch, the administrator is not seeing hosts as they connect or move from one port to another. What would cause this issue?

Options:

A.

MAC notification traps are misconfigured.


B.

Layer 3 polling is failing.


C.

The default scheduled polling is disabled.


D.

Contact polling is not configured.


Expert Solution
Questions # 16:

When preparing network infrastructure devices for visibility, what are the two main advantages of using MAC notification traps on supported devices instead of link-up and link-down traps? (Choose two.)

Options:

A.

MAC notification traps include IP address information.


B.

Overhead on FortiNAC-F and the infrastructure device is reduced.


C.

Hosts connecting to downstream non-managed hubs are immediately learned.


D.

Faster visibility updates with only a slight increase in processing.


Expert Solution
Questions # 17:

An administrator is configuring FortiNAC-F to manage FortiGate VPN users. As part of this configuration, what is the purpose of the FortiGate firewall policy that applies to clients not yet authorized?

Options:

A.

To allow access to only the production DNS server


B.

To allow access to only the production DNS server


C.

To allow access to only the FortiNAC-F VPN interface


D.

To allow access to only the FortiGate VPN interface


Expert Solution
Questions # 18:

Refer to the exhibit.

Question # 18

When a contractor account is created using this template, which value is set in the accounts Role field?

Options:

A.

Engineer-Contractor


B.

Eng-Contractor


C.

Contractor


D.

Accounting Contractor


Expert Solution
Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions