Fortinet NSE4_FGT-7.2 Practice Test - Questions Answers, Page 19
List of questions
Related questions
What is the primary FortiGate election process when the HA override setting is disabled?
A.
Connected monitored ports > Priority > HA uptime > FortiGate serial number
B.
Connected monitored ports > Priority > System uptime > FortiGate serial number
C.
Connected monitored ports > HA uptime > Priority > FortiGate serial number
D.
Connected monitored ports > System uptime > Priority > FortiGate serial number
Refer to the exhibit to view the firewall policy
Why would the firewall policy not block a well-known virus, for example eicar?
A.
Web filter is not enabled on the firewall policy to complement the antivirus profile.
B.
The firewall policy does not apply deep content inspection.
C.
The firewall policy is not configured in proxy-based inspection mode.
D.
The action on the firewall policy is not set to deny
Refer to the exhibits.
Exhibit A
Exhibit B
The exhibit contains a network interface configuration, firewall policies, and a CLI console configuration.
How will FortiGate handle user authentication for traffic that arrives on the LAN interface?
A.
If there is a fall-through policy in place, users will not be prompted for authentication.
B.
Authentication is enforced at a policy level; all users will be prompted for authentication.
C.
All users will be prompted for authentication, users from the Sales group can authenticate successfully with the correct credentials.
D.
All users will be prompted for authentication, users from the HR group can authenticate successfully with the correct credentials.
Which three pieces of information does FortiGate use to identify the hostname of the SSL server when SSL certificate inspection is enabled? (Choose three.)
A.
The server name indication (SNI) extension in the client hello message
B.
The subject alternative name (SAN) field in the server certificate
C.
The host field in the HTTP header
D.
The serial number in the server certificate
E.
The subject field in the server certificate
Question