option
Cuestiones
ayuda
daypo
buscar.php

🛡️ Fortinet NSE4 – FGT_AD-7.6 | Preguntas 31-40

COMENTARIOS ESTADÍSTICAS RÉCORDS
REALIZAR TEST
Título del Test:
🛡️ Fortinet NSE4 – FGT_AD-7.6 | Preguntas 31-40

Descripción:
Fortinet NSE4.

Fecha de Creación: 2026/09/17

Categoría: Informática

Número Preguntas: 10

Valoración:(0)
COMPARTE EL TEST
Nuevo ComentarioNuevo Comentario
Comentarios
NO HAY REGISTROS
Temario:

Which three methods are used by the collector agent for AD polling? (Choose three answers). NetAPI. WMI. WinSecLog. DNS reverse lookup. FSSO REST API.

Which two statements describe characteristics of automation stitches? (Choose two answers). Actions involve only devices included in the Security Fabric. An automation stitch can have multiple triggers. Multiple actions can run in parallel. Triggers can involve external connectors.

When configuring the connection between FortiGate and FortiAnalyzer, which option indicates that reliable traffic is enabled? (Choose one answer). The connection status shows a green check icon. The interface status is set to up. A padlock icon appears in the connection settings. The logging mode is set to real-time.

An administrator configures FortiGuard servers as DNS servers on FortiGate using default settings. What is true about the DNS connection to a FortiGuard server?. It uses UDP 53. It uses DNS over HTTPS. It uses DNS over TLS. It uses UDP 8888.

Refer to the exhibits. An administrator wants to add HQ-ISFW-2 in the Security Fabric. HQ-ISFW-2 is in the same subnet as HQ-ISFW. After configuring the Security Fabric settings on HQ-ISFW-2, the status stays Pending. What can be the two possible reasons? (Choose two answers). Upstream FortiGate IP must be set to 10.0.11.254. SAML Single Sign-On must be set to Manual. HQ-ISFW-2 must be authorized on HQ-ISFW. Management IP must be set to 10.0.13.254.

Refer to the exhibit. FortiGate has two separate firewall policies for Sales and Engineering to access the same web server with the same security profiles. Which action must the administrator perform to consolidate the two policies into one?. Select port1 and port2 subnets in a single firewall policy. Create an Aggregate interface that includes port1 and port2 to create a single firewall policy. Replace port1 and port2 with the any interface in a single firewall policy. Enable Multiple Interface Policies to select port1 and port2 in the same firewall policy.

How does FortiExtender connect to FortiSASE in a site-based, remote internet access method?. FortiExtender uses a Virtual Extensible LAN (VXLAN)-over-IPsec connection. FortiExtender establishes a secure SSL connection using FortiClient. FortiExtender first connects to a FortiGate LAN extension through a secure web gateway (SWG). FortiExtender uses the proxy auto-configuration < PAC) file and an explicit web proxy to connect.

Refer to the exhibits. A diagram of a FortiGate device connected to the network VIP object and firewall policy configurations are shown. The WAN (port2) interface has the IP address 100.65.0.101/24. The LAN (port4) interface has the IP address 10.0.11.254/24. If the host 100.65.1.111 sends a TCP SYN packet on port 443 to 100.65.0.200. what will the source address, destination address, and destination port of the packet be at the time FortiGate forwards the packet to the destination?. 10.0.11.254, 100.65.0.200. and 443, respectively. 10.0.11.254, 10.0.15.50, and 4443. respectively. 100.65.1. 111, 10.0.11.50, and 4443. respectively. 100.65.1.111, 10.0.11.50. and 443. respectively.

Which two statements about equal-cost multi-path (ECMP) configuration on FortiGate are true? (Choose two answers). If SD-WAN is enabled, you control the load balancing algorithm with the parameter load-balance-mode. If SD-WAN is disabled, you can configure the parameter v4-ecmp-mode to volume-based. If SD-WAN is enabled, you can configure routes with unequal distance and priority values to be part of ECMP. If SD-WAN is disabled, you configure the load balancing algorithm in config system settings.

Refer to the exhibits. An administrator configured both members of an HA cluster at the same time. After one week of monitoring, the administrator wants to verify the HA failover performance. How can the administrator force a failover? (Choose one answer). The administrator must reset the HA uptime on HQ-NGFW-1. The administrator must set the parameter override to enable on HQ-NGFW-2. The administrator must increase the HA priority on HQ-NGFW-2. The administrator must set the monitored port1 to down on HQ-NGFW-1.

Denunciar Test