Fortinet NSE4_FGT-7.2 Practice Test - Questions Answers, Page 5

List of questions
Question 41

Which two statements are true about the FGCP protocol? (Choose two.)
Question 42

Which two attributes are required on a certificate so it can be used as a CA certificate on SSL Inspection? (Choose two.)
Question 43

Which two inspection modes can you use to configure a firewall policy on a profile-based next-generation firewall (NGFW)? (Choose two.)
Question 44

Refer to the exhibit.
The Root and To_Internet VDOMs are configured in NAT mode. The DMZ and Local VDOMs are configured in transparent mode.
The Root VDOM is the management VDOM. The To_Internet VDOM allows LAN users to access the internet. The To_Internet VDOM is the only VDOM with internet access and is directly connected to ISP modem .
With this configuration, which statement is true?
Question 45

Refer to the exhibit.
The exhibit shows the IPS sensor configuration.
If traffic matches this IPS sensor, which two actions is the sensor expected to take? (Choose two.)
Question 46

Which CLI command allows administrators to troubleshoot Layer 2 issues, such as an IP address conflict?
Question 47

Refer to the exhibit showing a debug flow output.
Which two statements about the debug flow output are correct? (Choose two.)
Question 48

Which two settings are required for SSL VPN to function between two FortiGate devices? (Choose two.)
Question 49

On FortiGate, which type of logs record information about traffic directly to and from the FortiGate management IP addresses?
Question 50

Which statement about the policy ID number of a firewall policy is true?
Question