Fortinet NSE4_FGT-6.4 - Fortinet NSE 4 - FortiOS 6.4 Exam

Page:    1 / 25   
Total 121 questions

Which two statements are true when FortiGate is in transparent mode? (Choose two.)

  • A. By default, all interfaces are part of the same broadcast domain.
  • B. The existing network IP schema must be changed when installing a transparent mode FortiGate in the network.
  • C. Static routes are required to allow traffic to the next hop.
  • D. FortiGate forwards frames without changing the MAC address.


Answer : AD

Reference:
https://kb.fortinet.com/kb/viewAttachment.do?attachID=Fortigate_Transparent_Mode_Technical_Guide_FortiOS_4_0_version1.2.pdf&documentID=FD33113

What inspection mode does FortiGate use if it is configured as a policy-based next-generation firewall (NGFW)?

  • A. Full Content inspection
  • B. Proxy-based inspection
  • C. Certificate inspection
  • D. Flow-based inspection


Answer : D

Which two statements about IPsec authentication on FortiGate are correct? (Choose two.)

  • A. For a stronger authentication, you can also enable extended authentication (XAuth) to request the remote peer to provide a username and password.
  • B. FortiGate supports pre-shared key and signature as authentication methods.
  • C. Enabling XAuth results in a faster authentication because fewer packets are exchanged.
  • D. A certificate is not required on the remote peer when you set the signature as the authentication method.


Answer : AB

Reference:
https://docs.fortinet.com/document/fortigate/6.0.0/handbook/100552/using-xauth-authentication

Which scanning technique on FortiGate can be enabled only on the CLI?

  • A. Heuristics scan
  • B. Trojan scan
  • C. Antivirus scan
  • D. Ransomware scan


Answer : A

Reference:
https://docs.fortinet.com/document/fortigate/6.0.0/handbook/927086/examples

Which two policies must be configured to allow traffic on a policy-based next-generation firewall (NGFW) FortiGate? (Choose two.)

  • A. Firewall policy
  • B. Policy rule
  • C. Security policy
  • D. SSL inspection and authentication policy


Answer : AB

Reference:
https://docs.fortinet.com/document/fortigate/5.6.0/cookbook/38324/ngfw-policy-based-mode

Page:    1 / 25   
Total 121 questions