Fortinet NSE4_FGT-7.2 Practice Test - Questions Answers, Page 4

List of questions
Question 31

Which two settings can be separately configured per VDOM on a FortiGate device? (Choose two.)
C: 'Operating mode is per-VDOM setting. You can combine transparent mode VDOM's with NAT mode VDOMs on the same physical Fortigate.
D: 'Inspection-mode selection has moved from VDOM to firewall policy, and the default inspection-mode is flow, so NGFW Mode can be changed from Profile-base (Default) to Policy-base directly in System > Settings from the VDOM' Page 125 of FortiGate_Infrastructure_6.4_Study_Guide
Question 32

51 Which statement is correct regarding the inspection of some of the services available by web applications embedded in third-party websites?
https://help.fortinet.com/fortiproxy/11/Content/Admin%20Guides/FPX-AdminGuide/300_System/303d_FortiG
Question 33

An administrator wants to configure Dead Peer Detection (DPD) on IPSEC VPN for detecting dead tunnels. The requirement is that FortiGate sends DPD probes only when no traffic is observed in the tunnel.
Which DPD mode on FortiGate will meet the above requirement?
Question 34

Refer to the exhibit.
The global settings on a FortiGate device must be changed to align with company security policies. What does the Administrator account need to access the FortiGate global settings?
Question 35

Which two statements are correct about SLA targets? (Choose two.)
Question 36

Refer to the exhibit.
Given the routing database shown in the exhibit, which two statements are correct? (Choose two.)
Question 37

When configuring a firewall virtual wire pair policy, which following statement is true?
Question 38

Refer to the exhibit.
An administrator is running a sniffer command as shown in the exhibit.
Which three pieces of information are included in the sniffer output? (Choose three.)
Question 39

An administrator does not want to report the logon events of service accounts to FortiGate. What setting on the collector agent is required to achieve this?
Question 40

An administrator is configuring an IPsec VPN between site A and site B. The Remote Gateway setting in both sites has been configured as Static IP Address. For site A, the local quick mode selector is 192. 168. 1.0/24 and the remote quick mode selector is 192. 168.2.0/24.
Which subnet must the administrator configure for the local quick mode selector for site B?
Question