ExamGecko
Home / Fortinet / NSE4_FGT-7.2 / List of questions
Ask Question

Fortinet NSE4_FGT-7.2 Practice Test - Questions Answers, Page 4

Add to Whishlist

List of questions

Question 31

Report Export Collapse

Which two settings can be separately configured per VDOM on a FortiGate device? (Choose two.)

System time
System time
FortiGuaid update servers
FortiGuaid update servers
Operating mode
Operating mode
NGFW mode
NGFW mode
Suggested answer: C, D
Explanation:

C: 'Operating mode is per-VDOM setting. You can combine transparent mode VDOM's with NAT mode VDOMs on the same physical Fortigate.

D: 'Inspection-mode selection has moved from VDOM to firewall policy, and the default inspection-mode is flow, so NGFW Mode can be changed from Profile-base (Default) to Policy-base directly in System > Settings from the VDOM' Page 125 of FortiGate_Infrastructure_6.4_Study_Guide

asked 18/09/2024
Peter Unterasinger
46 questions

Question 32

Report Export Collapse

51 Which statement is correct regarding the inspection of some of the services available by web applications embedded in third-party websites?

The security actions applied on the web applications will also be explicitly applied on the third-party websites.
The security actions applied on the web applications will also be explicitly applied on the third-party websites.
The application signature database inspects traffic only from the original web application server.
The application signature database inspects traffic only from the original web application server.
FortiGuard maintains only one signature of each web application that is unique.
FortiGuard maintains only one signature of each web application that is unique.
FortiGate can inspect sub-application traffic regardless where it was originated.
FortiGate can inspect sub-application traffic regardless where it was originated.
Suggested answer: D
Explanation:

https://help.fortinet.com/fortiproxy/11/Content/Admin%20Guides/FPX-AdminGuide/300_System/303d_FortiG

asked 18/09/2024
Jennifer Leon
47 questions

Question 33

Report Export Collapse

An administrator wants to configure Dead Peer Detection (DPD) on IPSEC VPN for detecting dead tunnels. The requirement is that FortiGate sends DPD probes only when no traffic is observed in the tunnel.

Which DPD mode on FortiGate will meet the above requirement?

Disabled
Disabled
On Demand
On Demand
Enabled
Enabled
On Idle
On Idle
Suggested answer: D
asked 18/09/2024
KHALID ALSHAHRANI
48 questions

Question 34

Report Export Collapse

Refer to the exhibit.

Fortinet NSE4_FGT-7.2 image Question 34 26107 09182024185939000000

The global settings on a FortiGate device must be changed to align with company security policies. What does the Administrator account need to access the FortiGate global settings?

Change password
Change password
Enable restrict access to trusted hosts
Enable restrict access to trusted hosts
Change Administrator profile
Change Administrator profile
Enable two-factor authentication
Enable two-factor authentication
Suggested answer: C
asked 18/09/2024
Soumia Djenan
33 questions

Question 35

Report Export Collapse

Which two statements are correct about SLA targets? (Choose two.)

You can configure only two SLA targets per one Performance SLA.
You can configure only two SLA targets per one Performance SLA.
SLA targets are optional.
SLA targets are optional.
SLA targets are required for SD-WAN rules with a Best Quality strategy.
SLA targets are required for SD-WAN rules with a Best Quality strategy.
SLA targets are used only when referenced by an SD-WAN rule.
SLA targets are used only when referenced by an SD-WAN rule.
Suggested answer: B, D
asked 18/09/2024
Brian Lester
46 questions

Question 36

Report Export Collapse

Refer to the exhibit.

Fortinet NSE4_FGT-7.2 image Question 36 26109 09182024185939000000

Given the routing database shown in the exhibit, which two statements are correct? (Choose two.)

Become a Premium Member for full access
  Unlock Premium Member

Question 37

Report Export Collapse

When configuring a firewall virtual wire pair policy, which following statement is true?

Become a Premium Member for full access
  Unlock Premium Member

Question 38

Report Export Collapse

Refer to the exhibit.

Fortinet NSE4_FGT-7.2 image Question 38 26111 09182024185939000000

An administrator is running a sniffer command as shown in the exhibit.

Which three pieces of information are included in the sniffer output? (Choose three.)

Become a Premium Member for full access
  Unlock Premium Member

Question 39

Report Export Collapse

An administrator does not want to report the logon events of service accounts to FortiGate. What setting on the collector agent is required to achieve this?

Become a Premium Member for full access
  Unlock Premium Member

Question 40

Report Export Collapse

An administrator is configuring an IPsec VPN between site A and site B. The Remote Gateway setting in both sites has been configured as Static IP Address. For site A, the local quick mode selector is 192. 168. 1.0/24 and the remote quick mode selector is 192. 168.2.0/24.

Which subnet must the administrator configure for the local quick mode selector for site B?

Become a Premium Member for full access
  Unlock Premium Member
Total 184 questions
Go to page: of 19
Search