NSE4_FGT-6.4試験無料問題集「Fortinet NSE 4 - FortiOS 6.4 認定」

What is the effect of enabling auto-negotiate on the phase 2 configuration of an IPsec tunnel?

解説: (GoShiken メンバーにのみ表示されます)
How do you format the FortiGate flash disk?

An administrator is running the following sniffer command:

Which three pieces of Information will be Included in me sniffer output? {Choose three.)

正解:A,C,D 解答を投票する
Refer to the exhibit.

The exhibit contains a network diagram, virtual IP, IP pool, and firewall policies configuration.
The WAN (port1) interface has the IP address 10.200.1.1/24.
The LAN (port3) interface has the IP address 10 .0.1.254. /24.
The first firewall policy has NAT enabled using IP Pool.
The second firewall policy is configured with a VIP as the destination address.
Which IP address will be used to source NAT the internet traffic coming from a workstation with the IP address 10.0.1.10?

What types of traffic and attacks can be blocked by a web application firewall (WAF) profile? (Choose three.)

正解:A,C,E 解答を投票する
If Internet Service is already selected as Destination in a firewall policy, which other configuration objects can be selected to the Destination field of a firewall policy?

Which of statement is true about SSL VPN web mode?

解説: (GoShiken メンバーにのみ表示されます)
Refer to the exhibit.

The Root and To_Internet VDOMs are configured in NAT mode. The DMZ and Local VDOMs are configured in transparent mode.
The Root VDOM is the management VDOM. The To_Internet VDOM allows LAN users to access the Internet. The To_Internet VDOM is the only VDOM with internet access and is directly connected to ISP modem.
Which two statements are true? (Choose two.)

Why does FortiGate Keep TCP sessions in the session table for several seconds, even after both sides (client and server) have terminated the session?

Which two attributes are required on a certificate so it can be used as a CA certificate on SSL Inspection? (Choose two.)