NSE4_FGT-6.4 無料問題集「Fortinet NSE 4 - FortiOS 6.4」

A network administrator wants to set up redundant IPsec VPN tunnels on FortiGate by using two IPsec VPN tunnels and static routes.
* All traffic must be routed through the primary tunnel when both tunnels are up
* The secondary tunnel must be used only if the primary tunnel goes down
* In addition, FortiGate should be able to detect a dead tunnel to speed up tunnel failover Which two key configuration changes are needed on FortiGate to meet the design requirements? (Choose two,)

正解:B、C 解答を投票する
Which security feature does FortiGate provide to protect servers located in the internal networks from attacks such as SQL injections?

Which three criteria can a FortiGate use to look for a matching firewall policy to process traffic? (Choose three.)

正解:A、B、D 解答を投票する
Which two statements are true about collector agent standard access mode? (Choose two.)

正解:B、D 解答を投票する
Which of the following statements correctly describes FortiGates route lookup behavior when searching for a suitable gateway? (Choose two)

正解:A、C 解答を投票する
NGFW mode allows policy-based configuration for most inspection rules. Which security profile's configuration does not change when you enable policy-based inspection?

Which statement regarding the firewall policy authentication timeout is true?

An administrator wants to configure Dead Peer Detection (DPD) on IPSEC VPN for detecting dead tunnels. The requirement is that FortiGate sends DPD probes only when no traffic is observed in the tunnel.
Which DPD mode on FortiGate will meet the above requirement?

Refer to the FortiGuard connection debug output.

Based on the output shown in the exhibit, which two statements are correct? (Choose two.)

正解:A、C 解答を投票する
Which of the following are purposes of NAT traversal in IPsec? (Choose two.)

正解:B、D 解答を投票する

弊社を連絡する

我々は12時間以内ですべてのお問い合わせを答えます。

オンラインサポート時間:( UTC+9 ) 9:00-24:00
月曜日から土曜日まで

サポート:現在連絡