Fortinet NSE4_FGT-7.2 Practice Test - Questions Answers, Page 18
List of questions
Question 171

Refer to the exhibit.
The exhibit shows the output of a diagnose command.
What does the output reveal about the policy route?
Question 172

Refer to the exhibit.
A network administrator is troubleshooting an IPsec tunnel between two FortiGate devices. The administrator has determined that phase 1 status is up, but phase 2 fails to come up.
Based on the phase 2 configuration shown in the exhibit, which configuration change will bring phase 2 up?
Question 173

An administrator configures FortiGuard servers as DNS servers on FortiGate using default settings.
What is true about the DNS connection to a FortiGuard server?
Question 174

Which two statements describe how the RPF check is used? (Choose two.)
Question 175

What is a reason for triggering IPS fail open?
Question 176

How can you disable RPF checking?
Question 177

What are two features of the NGFW policy-based mode? (Choose two.)
Question 178

Refer to the exhibit.
The exhibit shows a diagram of a FortiGate device connected to the network and the firewall policy and IP pool configuration on the FortiGate device.
Two PCS, PCI and PC2, are connected behind FortiGate and can access the internet successfully. However, when the administrator adds a third PC to the network (PC3), the PC cannot connect to the Intarnet_
Based on the information shown in the exhibit, which three configuration changes should the administrator make to fix the connectivity issue for PC3? (Choose three.)
Question 179

What are two scanning techniques supported by FortiGate? (Choose two.)
Question 180

Refer to the exhibit.
In the network shown in the exhibit, the web client cannot connect to the HTTP web server. The administrator runs the FortiGate built-in sniffer and gets the output as shown in the exhibit.
What should the administrator do next to troubleshoot the problem?
Question