{"id":93619,"date":"2024-11-30T02:58:13","date_gmt":"2024-11-30T02:58:13","guid":{"rendered":"https:\/\/www.dumpsbase.com\/freedumps\/?p=93619"},"modified":"2024-11-30T02:58:13","modified_gmt":"2024-11-30T02:58:13","slug":"newest-fortinet-fcp_fgt_ad-7-4-dumps-v9-02-pass-the-fcp-fortigate-7-4-administrator-exam-with-the-best-scores","status":"publish","type":"post","link":"https:\/\/www.dumpsbase.com\/freedumps\/newest-fortinet-fcp_fgt_ad-7-4-dumps-v9-02-pass-the-fcp-fortigate-7-4-administrator-exam-with-the-best-scores.html","title":{"rendered":"Newest Fortinet FCP_FGT_AD-7.4 Dumps (V9.02) &#8211; Pass the FCP &#8211; FortiGate 7.4 Administrator Exam with the Best Scores"},"content":{"rendered":"<p>Are you preparing for the Fortinet FCP &#8211; FortiGate 7.4 Administrator (FCP_FGT_AD-7.4) exam? This certification is part of these specialized tracks:<\/p>\n<ul>\n<li>Fortinet Certified Professional <a href=\"https:\/\/www.dumpsbase.com\/fcp-in-network-security.html\"><em><strong>(FCP) &#8211; Network Security<\/strong><\/em><\/a><\/li>\n<li>Fortinet Certified Professional <a href=\"https:\/\/www.dumpsbase.com\/fcp-in-public-cloud-security.html\"><em><strong>(FCP) &#8211; Public Cloud Security<\/strong><\/em><\/a><\/li>\n<li>Fortinet Certified Professional <a href=\"https:\/\/www.dumpsbase.com\/fcp-in-security-operations.html\"><em><strong>(FCP) &#8211; Security Operations<\/strong><\/em><\/a><\/li>\n<\/ul>\n<p>DumpsBase&#8217;s Fortinet FCP_FGT_AD-7.4 exam dumps (V9.02) provide comprehensive coverage of the FCP &#8211; FortiGate 7.4 Administrator exam, helping you pass on your first attempt. Our latest dumps, combined with thorough practice, set you up for success. You&#8217;ll have easy access to FCP_FGT_AD-7.4 exam questions covering various topics, all at competitive prices. Achieving top scores in the FCP &#8211; FortiGate 7.4 Administrator certification exam becomes straightforward with our materials. Looking to enhance your expertise and make significant progress? Invest in our FCP_FGT_AD-7.4 dumps (V9.02). Available 24\/7, our dumps help you excel in the FCP &#8211; FortiGate 7.4 Administrator certification exam through DumpsBase&#8217;s updated FCP_FGT_AD-7.4 materials.<\/p>\n<p><!-- notionvc: da41931b-7f8e-477e-8bab-8953aed3fee5 --><\/p>\n<h2>Check Fortinet <em><span style=\"background-color: #00ffff;\">FCP_FGT_AD-7.4 free dumps<\/span><\/em> first:<\/h2>\n<script>\n\t  window.fbAsyncInit = function() {\n\t    FB.init({\n\t      appId            : '622169541470367',\n\t      autoLogAppEvents : true,\n\t      xfbml            : true,\n\t      version          : 'v3.1'\n\t    });\n\t  };\n\t\n\t  (function(d, s, id){\n\t     var js, fjs = d.getElementsByTagName(s)[0];\n\t     if (d.getElementById(id)) {return;}\n\t     js = d.createElement(s); js.id = id;\n\t     js.src = \"https:\/\/connect.facebook.net\/en_US\/sdk.js\";\n\t     fjs.parentNode.insertBefore(js, fjs);\n\t   }(document, 'script', 'facebook-jssdk'));\n\t<\/script><script type=\"text\/javascript\" >\ndocument.addEventListener(\"DOMContentLoaded\", function(event) { \nif(!window.jQuery) alert(\"The important jQuery library is not properly loaded in your site. Your WordPress theme is probably missing the essential wp_head() call. You can switch to another theme and you will see that the plugin works fine and this notice disappears. If you are still not sure what to do you can contact us for help.\");\n});\n<\/script>  \n  \n<div  id=\"watupro_quiz\" class=\"quiz-area single-page-quiz\">\n<p id=\"submittingExam9259\" style=\"display:none;text-align:center;\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/plugins\/watupro\/img\/loading.gif\" width=\"16\" height=\"16\"><\/p>\n\n<div class=\"watupro-exam-description\" id=\"description-quiz-9259\"><\/div>\n\n<form action=\"\" method=\"post\" class=\"quiz-form\" id=\"quiz-9259\"  enctype=\"multipart\/form-data\" >\n<div class='watu-question ' id='question-1' style=';'><div id='questionWrap-1'  class='   watupro-question-id-367541'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>1. <\/span>Refer to the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=600 height=225 src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image001-7.png\"><br><br \/>\r<br>Which route will be selected when trying to reach 10.20.30.254? <br \/>\r<br>A. 10.20.30.0\/24 [10\/0] via 172.20.167.254, port3, [1\/0] <br \/>\r<br>B. 10.30.20.0\/24 [10\/0] via 172.20.121.2, port1, [1\/0] <br \/>\r<br>C. 10.20.30.0\/26 [10\/0] via 172.20.168.254, port2, [1\/0] <br \/>\r<br>D. 0.0.0.0\/0 [10\/0] via 172.20.121.2, port1, [1\/0]<\/div><input type='hidden' name='question_id[]' id='qID_1' value='367541' \/><input type='hidden' id='answerType367541' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367541[]' id='textarea_q_367541' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-2' style=';'><div id='questionWrap-2'  class='   watupro-question-id-367542'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>2. <\/span>Which two IP pool types are useful for carrier-grade NAT deployments? (Choose two.) <br \/>\r<br>A. Port block allocation <br \/>\r<br>B. Fixed port range <br \/>\r<br>C. One-to-one <br \/>\r<br>D. Overload<\/div><input type='hidden' name='question_id[]' id='qID_2' value='367542' \/><input type='hidden' id='answerType367542' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367542[]' id='textarea_q_367542' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-3' style=';'><div id='questionWrap-3'  class='   watupro-question-id-367543'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>3. <\/span>What is eXtended Authentication (XAuth)?<\/div><input type='hidden' name='question_id[]' id='qID_3' value='367543' \/><input type='hidden' id='answerType367543' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367543[]' id='answer-id-1432012' class='answer   answerof-367543 ' value='1432012'   \/><label for='answer-id-1432012' id='answer-label-1432012' class=' answer'><span>It is an IPsec extension that forces remote VPN users to authenticate using their local I<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367543[]' id='answer-id-1432013' class='answer   answerof-367543 ' value='1432013'   \/><label for='answer-id-1432013' id='answer-label-1432013' class=' answer'><span>It is an IPsec extension that forces remote VPN users to authenticate using their credentials (username and password).<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367543[]' id='answer-id-1432014' class='answer   answerof-367543 ' value='1432014'   \/><label for='answer-id-1432014' id='answer-label-1432014' class=' answer'><span>It is an IPsec extension that authenticates remote VPN peers using a pre-shared key.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367543[]' id='answer-id-1432015' class='answer   answerof-367543 ' value='1432015'   \/><label for='answer-id-1432015' id='answer-label-1432015' class=' answer'><span>It is an IPsec extension that authenticates remote VPN peers using digital certificates.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-4' style=';'><div id='questionWrap-4'  class='   watupro-question-id-367544'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>4. <\/span>What must you configure to enable proxy-based TCP session failover?<\/div><input type='hidden' name='question_id[]' id='qID_4' value='367544' \/><input type='hidden' id='answerType367544' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367544[]' id='answer-id-1432016' class='answer   answerof-367544 ' value='1432016'   \/><label for='answer-id-1432016' id='answer-label-1432016' class=' answer'><span>You must configure ha-configuration-sync under configure system ha.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367544[]' id='answer-id-1432017' class='answer   answerof-367544 ' value='1432017'   \/><label for='answer-id-1432017' id='answer-label-1432017' class=' answer'><span>You do not need to configure anything because all TCP sessions are automatically failed over.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367544[]' id='answer-id-1432018' class='answer   answerof-367544 ' value='1432018'   \/><label for='answer-id-1432018' id='answer-label-1432018' class=' answer'><span>You must configure session-pickup-enable under configure system ha.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367544[]' id='answer-id-1432019' class='answer   answerof-367544 ' value='1432019'   \/><label for='answer-id-1432019' id='answer-label-1432019' class=' answer'><span>You must configure session-pickup-connectionless enable under configure system ha.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-5' style=';'><div id='questionWrap-5'  class='   watupro-question-id-367545'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>5. <\/span>An administrator needs to inspect all web traffic (including Internet web traffic) coming from users connecting to the SSL-VPN. <br \/>\r<br>How can this be achieved?<\/div><input type='hidden' name='question_id[]' id='qID_5' value='367545' \/><input type='hidden' id='answerType367545' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367545[]' id='answer-id-1432020' class='answer   answerof-367545 ' value='1432020'   \/><label for='answer-id-1432020' id='answer-label-1432020' class=' answer'><span>Assigning public IP addresses to SSL-VPN users<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367545[]' id='answer-id-1432021' class='answer   answerof-367545 ' value='1432021'   \/><label for='answer-id-1432021' id='answer-label-1432021' class=' answer'><span>Configuring web bookmarks<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367545[]' id='answer-id-1432022' class='answer   answerof-367545 ' value='1432022'   \/><label for='answer-id-1432022' id='answer-label-1432022' class=' answer'><span>Disabling split tunneling<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367545[]' id='answer-id-1432023' class='answer   answerof-367545 ' value='1432023'   \/><label for='answer-id-1432023' id='answer-label-1432023' class=' answer'><span>Using web-only mode<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-6' style=';'><div id='questionWrap-6'  class='   watupro-question-id-367546'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>6. <\/span>Which NAT method translates the source IP address in a packet to another IP address?<\/div><input type='hidden' name='question_id[]' id='qID_6' value='367546' \/><input type='hidden' id='answerType367546' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367546[]' id='answer-id-1432024' class='answer   answerof-367546 ' value='1432024'   \/><label for='answer-id-1432024' id='answer-label-1432024' class=' answer'><span>DNAT<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367546[]' id='answer-id-1432025' class='answer   answerof-367546 ' value='1432025'   \/><label for='answer-id-1432025' id='answer-label-1432025' class=' answer'><span>SNAT<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367546[]' id='answer-id-1432026' class='answer   answerof-367546 ' value='1432026'   \/><label for='answer-id-1432026' id='answer-label-1432026' class=' answer'><span>VIP<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367546[]' id='answer-id-1432027' class='answer   answerof-367546 ' value='1432027'   \/><label for='answer-id-1432027' id='answer-label-1432027' class=' answer'><span>IPPOOL<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-7' style=';'><div id='questionWrap-7'  class='   watupro-question-id-367547'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>7. <\/span>What is the common feature shared between IPv4 and SD-WAN ECMP algorithms?<\/div><input type='hidden' name='question_id[]' id='qID_7' value='367547' \/><input type='hidden' id='answerType367547' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367547[]' id='answer-id-1432028' class='answer   answerof-367547 ' value='1432028'   \/><label for='answer-id-1432028' id='answer-label-1432028' class=' answer'><span>Both can be enabled at the same time.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367547[]' id='answer-id-1432029' class='answer   answerof-367547 ' value='1432029'   \/><label for='answer-id-1432029' id='answer-label-1432029' class=' answer'><span>Both support volume algorithms.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367547[]' id='answer-id-1432030' class='answer   answerof-367547 ' value='1432030'   \/><label for='answer-id-1432030' id='answer-label-1432030' class=' answer'><span>Both control ECMP algorithms.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367547[]' id='answer-id-1432031' class='answer   answerof-367547 ' value='1432031'   \/><label for='answer-id-1432031' id='answer-label-1432031' class=' answer'><span>Both use the same physical interface load balancing settings.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-8' style=';'><div id='questionWrap-8'  class='   watupro-question-id-367548'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>8. <\/span>Refer to the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=520 height=449 id=\"\u56fe\u7247 4\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image002-5.png\"><br><br \/>\r<br>Which statement about the configuration settings is true?<\/div><input type='hidden' name='question_id[]' id='qID_8' value='367548' \/><input type='hidden' id='answerType367548' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367548[]' id='answer-id-1432032' class='answer   answerof-367548 ' value='1432032'   \/><label for='answer-id-1432032' id='answer-label-1432032' class=' answer'><span>When a remote user accesses http:\/\/10.200.1.1:443, the SSL-VPN login page opens.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367548[]' id='answer-id-1432033' class='answer   answerof-367548 ' value='1432033'   \/><label for='answer-id-1432033' id='answer-label-1432033' class=' answer'><span>When a remote user accesses https:\/\/10.200.1.1:443, the SSL-VPN login page opens.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367548[]' id='answer-id-1432034' class='answer   answerof-367548 ' value='1432034'   \/><label for='answer-id-1432034' id='answer-label-1432034' class=' answer'><span>When a remote user accesses https:\/\/10.200.1.1:443, the FortiGate login page opens.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367548[]' id='answer-id-1432035' class='answer   answerof-367548 ' value='1432035'   \/><label for='answer-id-1432035' id='answer-label-1432035' class=' answer'><span>The settings are invalid. The administrator settings and the SSL-VPN settings cannot use the same port.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-9' style=';'><div id='questionWrap-9'  class='   watupro-question-id-367549'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>9. <\/span>What is the limitation of using a URL list and application control on the same firewall policy, in NGFW policy-based mode? <br \/>\r<br>A. It limits the scanning of application traffic to the browser-based technology category only. <br \/>\r<br>B. It limits the scanning of application traffic to the DNS protocol only. <br \/>\r<br>C. It limits the scanning of application traffic to use parent signatures only. <br \/>\r<br>D. It limits the scanning of application traffic to the application category only.<\/div><input type='hidden' name='question_id[]' id='qID_9' value='367549' \/><input type='hidden' id='answerType367549' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367549[]' id='textarea_q_367549' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-10' style=';'><div id='questionWrap-10'  class='   watupro-question-id-367550'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>10. <\/span>Refer to the exhibits. <br \/>\r<br><br><img decoding=\"async\" width=649 height=567 id=\"\u56fe\u7247 5\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image003-25.jpg\"><br><br \/>\r<br><br><img decoding=\"async\" width=586 height=339 id=\"\u56fe\u7247 6\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image004-5.png\"><br><br \/>\r<br>The exhibits show the firewall policies and the objects used in the firewall policies. <br \/>\r<br>The administrator is using the Policy Lookup feature and has entered the search criteria shown in the exhibit. <br \/>\r<br>Which policy will be highlighted, based on the input criteria?<\/div><input type='hidden' name='question_id[]' id='qID_10' value='367550' \/><input type='hidden' id='answerType367550' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367550[]' id='answer-id-1432037' class='answer   answerof-367550 ' value='1432037'   \/><label for='answer-id-1432037' id='answer-label-1432037' class=' answer'><span>Policy with ID 4.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367550[]' id='answer-id-1432038' class='answer   answerof-367550 ' value='1432038'   \/><label for='answer-id-1432038' id='answer-label-1432038' class=' answer'><span>Policy with ID 5.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367550[]' id='answer-id-1432039' class='answer   answerof-367550 ' value='1432039'   \/><label for='answer-id-1432039' id='answer-label-1432039' class=' answer'><span>Policies with ID 2 and 3.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367550[]' id='answer-id-1432040' class='answer   answerof-367550 ' value='1432040'   \/><label for='answer-id-1432040' id='answer-label-1432040' class=' answer'><span>Policy with ID 1.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-11' style=';'><div id='questionWrap-11'  class='   watupro-question-id-367551'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>11. <\/span>FortiGate is operating in NAT mode and is configured with two virtual LAN (VLAN) subinterfaces added to the same physical interface. <br \/>\r<br>In this scenario, what are two requirements for the VLAN ID? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_11' value='367551' \/><input type='hidden' id='answerType367551' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367551[]' id='answer-id-1432041' class='answer   answerof-367551 ' value='1432041'   \/><label for='answer-id-1432041' id='answer-label-1432041' class=' answer'><span>The two VLAN subinterfaces can have the same VLAN ID, only if they have IP addresses in the same subnet.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367551[]' id='answer-id-1432042' class='answer   answerof-367551 ' value='1432042'   \/><label for='answer-id-1432042' id='answer-label-1432042' class=' answer'><span>The two VLAN subinterfaces can have the same VLAN ID, only if they belong to different VDOMs.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367551[]' id='answer-id-1432043' class='answer   answerof-367551 ' value='1432043'   \/><label for='answer-id-1432043' id='answer-label-1432043' class=' answer'><span>The two VLAN subinterfaces must have different VLAN IDs.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367551[]' id='answer-id-1432044' class='answer   answerof-367551 ' value='1432044'   \/><label for='answer-id-1432044' id='answer-label-1432044' class=' answer'><span>The two VLAN subinterfaces can have the same VLAN ID, only if they have IP addresses in \r\ndifferent subnets.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-12' style=';'><div id='questionWrap-12'  class='   watupro-question-id-367552'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>12. <\/span>An administrator has configured a strict RPF check on FortiGate. <br \/>\r<br>How does strict RPF check work?<\/div><input type='hidden' name='question_id[]' id='qID_12' value='367552' \/><input type='hidden' id='answerType367552' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367552[]' id='answer-id-1432045' class='answer   answerof-367552 ' value='1432045'   \/><label for='answer-id-1432045' id='answer-label-1432045' class=' answer'><span>Strict RPF allows packets back to sources with all active routes.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367552[]' id='answer-id-1432046' class='answer   answerof-367552 ' value='1432046'   \/><label for='answer-id-1432046' id='answer-label-1432046' class=' answer'><span>Strict RPF checks the best route back to the source using the incoming interface.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367552[]' id='answer-id-1432047' class='answer   answerof-367552 ' value='1432047'   \/><label for='answer-id-1432047' id='answer-label-1432047' class=' answer'><span>Strict RPF checks only for the existence of at least one active route back to the source using the incoming interface.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367552[]' id='answer-id-1432048' class='answer   answerof-367552 ' value='1432048'   \/><label for='answer-id-1432048' id='answer-label-1432048' class=' answer'><span>Strict RPF check is run on the first sent and reply packet of any new session.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-13' style=';'><div id='questionWrap-13'  class='   watupro-question-id-367553'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>13. <\/span>An administrator has configured the following settings: <br \/>\r<br>config system settings <br \/>\r<br>set ses-denied-traffic enable <br \/>\r<br>end <br \/>\r<br>config system global <br \/>\r<br>set block-session-timer 30 <br \/>\r<br>end <br \/>\r<br>What are the two results of this configuration? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_13' value='367553' \/><input type='hidden' id='answerType367553' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367553[]' id='answer-id-1432049' class='answer   answerof-367553 ' value='1432049'   \/><label for='answer-id-1432049' id='answer-label-1432049' class=' answer'><span>Device detection on all interfaces is enforced for 30 seconds.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367553[]' id='answer-id-1432050' class='answer   answerof-367553 ' value='1432050'   \/><label for='answer-id-1432050' id='answer-label-1432050' class=' answer'><span>Denied users are blocked for 30 seconds.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367553[]' id='answer-id-1432051' class='answer   answerof-367553 ' value='1432051'   \/><label for='answer-id-1432051' id='answer-label-1432051' class=' answer'><span>The number of logs generated by denied traffic is reduced.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367553[]' id='answer-id-1432052' class='answer   answerof-367553 ' value='1432052'   \/><label for='answer-id-1432052' id='answer-label-1432052' class=' answer'><span>A session for denied traffic is created.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-14' style=';'><div id='questionWrap-14'  class='   watupro-question-id-367554'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>14. <\/span>Refer to the exhibits. <br \/>\r<br><br><img decoding=\"async\" width=447 height=397 id=\"\u56fe\u7247 7\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image005-3.png\"><br><br \/>\r<br><br><img decoding=\"async\" width=432 height=630 id=\"\u56fe\u7247 8\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image006-3.png\"><br><br \/>\r<br>The exhibits show the SSL and authentication policy (Exhibit A) and the security policy (Exhibit B) for Facebook. <br \/>\r<br>Users are given access to the Facebook web application. They can play video content hosted on Facebook, but they are unable to leave reactions on videos or other types of posts. <br \/>\r<br>Which part of the policy configuration must you change to resolve the issue?<\/div><input type='hidden' name='question_id[]' id='qID_14' value='367554' \/><input type='hidden' id='answerType367554' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367554[]' id='answer-id-1432053' class='answer   answerof-367554 ' value='1432053'   \/><label for='answer-id-1432053' id='answer-label-1432053' class=' answer'><span>Force access to Facebook using the HTTP service.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367554[]' id='answer-id-1432054' class='answer   answerof-367554 ' value='1432054'   \/><label for='answer-id-1432054' id='answer-label-1432054' class=' answer'><span>Make the SSL inspection a deep content inspection.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367554[]' id='answer-id-1432055' class='answer   answerof-367554 ' value='1432055'   \/><label for='answer-id-1432055' id='answer-label-1432055' class=' answer'><span>Add Facebook in the URL category in the security policy.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367554[]' id='answer-id-1432056' class='answer   answerof-367554 ' value='1432056'   \/><label for='answer-id-1432056' id='answer-label-1432056' class=' answer'><span>Get the additional application signatures required to add to the security policy.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-15' style=';'><div id='questionWrap-15'  class='   watupro-question-id-367555'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>15. <\/span>Refer to the exhibits. <br \/>\r<br>An administrator creates a new address object on the root FortiGate (Local-FortiGate) in the security fabric. After synchronization, this object is not available on the downstream FortiGate (ISFW). <br \/>\r<br><br><img decoding=\"async\" width=649 height=340 id=\"\u56fe\u7247 9\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image007-19.jpg\"><br><br \/>\r<br><br><img decoding=\"async\" width=649 height=241 id=\"\u56fe\u7247 10\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image008-19.jpg\"><br><br \/>\r<br>What must the administrator do to synchronize the address object?<\/div><input type='hidden' name='question_id[]' id='qID_15' value='367555' \/><input type='hidden' id='answerType367555' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367555[]' id='answer-id-1432057' class='answer   answerof-367555 ' value='1432057'   \/><label for='answer-id-1432057' id='answer-label-1432057' class=' answer'><span>Change the csf setting on ISFW (downstream) to set configuration-sync local.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367555[]' id='answer-id-1432058' class='answer   answerof-367555 ' value='1432058'   \/><label for='answer-id-1432058' id='answer-label-1432058' class=' answer'><span>Change the csf setting on ISFW (downstream) to set authorization-request-type certificate.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367555[]' id='answer-id-1432059' class='answer   answerof-367555 ' value='1432059'   \/><label for='answer-id-1432059' id='answer-label-1432059' class=' answer'><span>Change the csf setting on both devices to set downstream-access enable.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367555[]' id='answer-id-1432060' class='answer   answerof-367555 ' value='1432060'   \/><label for='answer-id-1432060' id='answer-label-1432060' class=' answer'><span>Change the csf setting on Local-FortiGate (root) to set fabric-object-unification default.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-16' style=';'><div id='questionWrap-16'  class='   watupro-question-id-367556'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>16. <\/span>Refer to the exhibits. <br \/>\r<br>Exhibit A shows system performance output. <br \/>\r<br><br><img decoding=\"async\" width=649 height=205 id=\"\u56fe\u7247 11\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image009-17.jpg\"><br><br \/>\r<br>Exhibit B shows a FortiGate configured with the default configuration of high memory usage thresholds. <br \/>\r<br><br><img decoding=\"async\" width=450 height=153 id=\"\u56fe\u7247 12\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image010-2.png\"><br><br \/>\r<br>Based on the system performance output, which two results are correct? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_16' value='367556' \/><input type='hidden' id='answerType367556' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367556[]' id='answer-id-1432061' class='answer   answerof-367556 ' value='1432061'   \/><label for='answer-id-1432061' id='answer-label-1432061' class=' answer'><span>FortiGate will start sending all files to FortiSandbox for inspection.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367556[]' id='answer-id-1432062' class='answer   answerof-367556 ' value='1432062'   \/><label for='answer-id-1432062' id='answer-label-1432062' class=' answer'><span>FortiGate has entered conserve mode.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367556[]' id='answer-id-1432063' class='answer   answerof-367556 ' value='1432063'   \/><label for='answer-id-1432063' id='answer-label-1432063' class=' answer'><span>Administrators cannot change the configuration.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367556[]' id='answer-id-1432064' class='answer   answerof-367556 ' value='1432064'   \/><label for='answer-id-1432064' id='answer-label-1432064' class=' answer'><span>Administrators can access FortiGate only through the console port.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-17' style=';'><div id='questionWrap-17'  class='   watupro-question-id-367557'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>17. <\/span>Refer to the exhibit showing a debug flow output. <br \/>\r<br><br><img decoding=\"async\" width=649 height=118 id=\"\u56fe\u7247 13\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image011-17.jpg\"><br><br \/>\r<br>What two conclusions can you make from the debug flow output? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_17' value='367557' \/><input type='hidden' id='answerType367557' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367557[]' id='answer-id-1432065' class='answer   answerof-367557 ' value='1432065'   \/><label for='answer-id-1432065' id='answer-label-1432065' class=' answer'><span>The debug flow is for ICMP traffic.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367557[]' id='answer-id-1432066' class='answer   answerof-367557 ' value='1432066'   \/><label for='answer-id-1432066' id='answer-label-1432066' class=' answer'><span>The default route is required to receive a reply.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367557[]' id='answer-id-1432067' class='answer   answerof-367557 ' value='1432067'   \/><label for='answer-id-1432067' id='answer-label-1432067' class=' answer'><span>A new traffic session was created.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367557[]' id='answer-id-1432068' class='answer   answerof-367557 ' value='1432068'   \/><label for='answer-id-1432068' id='answer-label-1432068' class=' answer'><span>A firewall policy allowed the connection.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-18' style=';'><div id='questionWrap-18'  class='   watupro-question-id-367558'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>18. <\/span>An administrator is configuring an IPsec VPN between site A and site B. The Remote Gateway setting in both sites has been configured as Static IP Address. For site A, the local quick mode selector is 192.168.1.0\/24 and the remote quick mode selector is 192.168.2.0\/24. <br \/>\r<br>Which subnet must the administrator configure for the local quick mode selector for site B? <br \/>\r<br>A. 192.168.2.0\/24 <br \/>\r<br>B. 192.168.0.0\/8 <br \/>\r<br>C. 192.168.1.0\/24 <br \/>\r<br>D. 192.168.3.0\/24<\/div><input type='hidden' name='question_id[]' id='qID_18' value='367558' \/><input type='hidden' id='answerType367558' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367558[]' id='textarea_q_367558' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-19' style=';'><div id='questionWrap-19'  class='   watupro-question-id-367559'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>19. <\/span>Which two settings are required for SSL VPN to function between two FortiGate devices? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_19' value='367559' \/><input type='hidden' id='answerType367559' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367559[]' id='answer-id-1432070' class='answer   answerof-367559 ' value='1432070'   \/><label for='answer-id-1432070' id='answer-label-1432070' class=' answer'><span>The client FortiGate requires a manually added route to remote subnets.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367559[]' id='answer-id-1432071' class='answer   answerof-367559 ' value='1432071'   \/><label for='answer-id-1432071' id='answer-label-1432071' class=' answer'><span>The client FortiGate requires a client certificate signed by the CA on the server FortiGate.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367559[]' id='answer-id-1432072' class='answer   answerof-367559 ' value='1432072'   \/><label for='answer-id-1432072' id='answer-label-1432072' class=' answer'><span>The server FortiGate requires a CA certificate to verify the client FortiGate certificate.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367559[]' id='answer-id-1432073' class='answer   answerof-367559 ' value='1432073'   \/><label for='answer-id-1432073' id='answer-label-1432073' class=' answer'><span>The client FortiGate requires the SSL VPN tunnel interface type to connect SSL VP<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-20' style=';'><div id='questionWrap-20'  class='   watupro-question-id-367560'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>20. <\/span>Which statement correctly describes the use of reliable logging on FortiGate?<\/div><input type='hidden' name='question_id[]' id='qID_20' value='367560' \/><input type='hidden' id='answerType367560' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367560[]' id='answer-id-1432074' class='answer   answerof-367560 ' value='1432074'   \/><label for='answer-id-1432074' id='answer-label-1432074' class=' answer'><span>Reliable logging is enabled by default in all configuration scenarios.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367560[]' id='answer-id-1432075' class='answer   answerof-367560 ' value='1432075'   \/><label for='answer-id-1432075' id='answer-label-1432075' class=' answer'><span>Reliable logging is required to encrypt the transmission of logs.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367560[]' id='answer-id-1432076' class='answer   answerof-367560 ' value='1432076'   \/><label for='answer-id-1432076' id='answer-label-1432076' class=' answer'><span>Reliable logging can be configured only using the CL<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367560[]' id='answer-id-1432077' class='answer   answerof-367560 ' value='1432077'   \/><label for='answer-id-1432077' id='answer-label-1432077' class=' answer'><span>Reliable logging prevents the loss of logs when the local disk is full.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-21' style=';'><div id='questionWrap-21'  class='   watupro-question-id-367561'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>21. <\/span>Refer to the exhibits. <br \/>\r<br><br><img decoding=\"async\" width=650 height=336 id=\"\u56fe\u7247 14\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image012-2.png\"><br><br \/>\r<br><br><img decoding=\"async\" width=649 height=401 id=\"\u56fe\u7247 15\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image013-15.jpg\"><br><br \/>\r<br>The exhibits contain a network diagram, and virtual IP, IP pool, and firewall policies configuration information. <br \/>\r<br>The WAN (port1) interface has the IP address 10.200.1.1\/24. <br \/>\r<br>The LAN (port3) interface has the IP address 10.0.1.254\/24. <br \/>\r<br>The first firewall policy has NAT enabled using IP pool. <br \/>\r<br>The second firewall policy is configured with a VIP as the destination address. <br \/>\r<br>Which IP address will be used to source NAT (SNAT) the internet traffic coming from a workstation with the IP address 10.0.1.10?<\/div><input type='hidden' name='question_id[]' id='qID_21' value='367561' \/><input type='hidden' id='answerType367561' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367561[]' id='answer-id-1432078' class='answer   answerof-367561 ' value='1432078'   \/><label for='answer-id-1432078' id='answer-label-1432078' class=' answer'><span>10.200.1.1<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367561[]' id='answer-id-1432079' class='answer   answerof-367561 ' value='1432079'   \/><label for='answer-id-1432079' id='answer-label-1432079' class=' answer'><span>10.0.1.254<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367561[]' id='answer-id-1432080' class='answer   answerof-367561 ' value='1432080'   \/><label for='answer-id-1432080' id='answer-label-1432080' class=' answer'><span>10.200.1.10<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367561[]' id='answer-id-1432081' class='answer   answerof-367561 ' value='1432081'   \/><label for='answer-id-1432081' id='answer-label-1432081' class=' answer'><span>10.200.1.100<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-22' style=';'><div id='questionWrap-22'  class='   watupro-question-id-367562'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>22. <\/span>Refer to the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=649 height=303 id=\"\u56fe\u7247 16\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image014-16.jpg\"><br><br \/>\r<br>The exhibit shows a diagram of a FortiGate device connected to the network, the firewall policy and VIP configuration on the FortiGate device, and the routing table on the ISP router. <br \/>\r<br>When the administrator tries to access the web server public address (203.0.113.2) from the internet, the connection times out. At the same time, the administrator runs a sniffer on FortiGate to capture incoming web traffic to the server and does not see any output. <br \/>\r<br>Based on the information shown in the exhibit, what configuration change must the administrator make to fix the connectivity issue?<\/div><input type='hidden' name='question_id[]' id='qID_22' value='367562' \/><input type='hidden' id='answerType367562' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367562[]' id='answer-id-1432082' class='answer   answerof-367562 ' value='1432082'   \/><label for='answer-id-1432082' id='answer-label-1432082' class=' answer'><span>Configure a loopback interface with address 203.0.113.2\/32.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367562[]' id='answer-id-1432083' class='answer   answerof-367562 ' value='1432083'   \/><label for='answer-id-1432083' id='answer-label-1432083' class=' answer'><span>In the VIP configuration, enable arp-reply.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367562[]' id='answer-id-1432084' class='answer   answerof-367562 ' value='1432084'   \/><label for='answer-id-1432084' id='answer-label-1432084' class=' answer'><span>Enable port forwarding on the server to map the external service port to the internal service port.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367562[]' id='answer-id-1432085' class='answer   answerof-367562 ' value='1432085'   \/><label for='answer-id-1432085' id='answer-label-1432085' class=' answer'><span>In the firewall policy configuration, enable match-vip.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-23' style=';'><div id='questionWrap-23'  class='   watupro-question-id-367563'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>23. <\/span>Which two statements are true about the FGCP protocol? (Choose two.) <br \/>\r<br>A. FGCP elects the primary FortiGate device. <br \/>\r<br>B. FGCP is not used when FortiGate is in transparent mode. <br \/>\r<br>C. FGCP runs only over the heartbeat links. <br \/>\r<br>D. FGCP is used to discover FortiGate devices in different HA groups.<\/div><input type='hidden' name='question_id[]' id='qID_23' value='367563' \/><input type='hidden' id='answerType367563' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367563[]' id='textarea_q_367563' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-24' style=';'><div id='questionWrap-24'  class='   watupro-question-id-367564'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>24. <\/span>A network administrator wants to set up redundant IPsec VPN tunnels on FortiGate by using two IPsec VPN tunnels and static routes. <br \/>\r<br>All traffic must be routed through the primary tunnel when both tunnels are up. The secondary tunnel must be used only if the primary tunnel goes down. In addition, FortiGate should be able to detect a dead tunnel to speed up tunnel failover. <br \/>\r<br>Which two key configuration changes must the administrator make on FortiGate to meet the requirements? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_24' value='367564' \/><input type='hidden' id='answerType367564' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367564[]' id='answer-id-1432087' class='answer   answerof-367564 ' value='1432087'   \/><label for='answer-id-1432087' id='answer-label-1432087' class=' answer'><span>Configure a higher distance on the static route for the primary tunnel, and a lower distance on the static route for the secondary tunnel.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367564[]' id='answer-id-1432088' class='answer   answerof-367564 ' value='1432088'   \/><label for='answer-id-1432088' id='answer-label-1432088' class=' answer'><span>Configure a lower distance on the static route for the primary tunnel, and a higher distance on the \r\nstatic route for the secondary tunnel.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367564[]' id='answer-id-1432089' class='answer   answerof-367564 ' value='1432089'   \/><label for='answer-id-1432089' id='answer-label-1432089' class=' answer'><span>Enable Auto-negotiate and Autokey Keep Alive on the phase 2 configuration of both tunnels.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367564[]' id='answer-id-1432090' class='answer   answerof-367564 ' value='1432090'   \/><label for='answer-id-1432090' id='answer-label-1432090' class=' answer'><span>Enable Dead Peer Detection.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-25' style=';'><div id='questionWrap-25'  class='   watupro-question-id-367565'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>25. <\/span>What are two benefits of flow-based inspection compared to proxy-based inspection? (Choose two.) <br \/>\r<br>A. FortiGate uses fewer resources. <br \/>\r<br>B. FortiGate performs a more exhaustive inspection on traffic. <br \/>\r<br>C. FortiGate adds less latency to traffic. <br \/>\r<br>D. FortiGate allocates two sessions per connection.<\/div><input type='hidden' name='question_id[]' id='qID_25' value='367565' \/><input type='hidden' id='answerType367565' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367565[]' id='textarea_q_367565' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-26' style=';'><div id='questionWrap-26'  class='   watupro-question-id-367566'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>26. <\/span>FortiGuard categories can be overridden and defined in different categories. To create a web rating override for the example.com home page, the override must be configured using a specific syntax. <br \/>\r<br>Which two syntaxes are correct to configure a web rating override for the home page? (Choose two.) <br \/>\r<br>A. www.example.com <br \/>\r<br>B. www.example.com\/index.html <br \/>\r<br>C. www.example.com:443 <br \/>\r<br>D. example.com<\/div><input type='hidden' name='question_id[]' id='qID_26' value='367566' \/><input type='hidden' id='answerType367566' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367566[]' id='textarea_q_367566' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-27' style=';'><div id='questionWrap-27'  class='   watupro-question-id-367567'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>27. <\/span>Refer to exhibit. <br \/>\r<br>An administrator configured the web filtering profile shown in the exhibit to block access to all social networking sites except Twitter. However, when users try to access twitter.com, they are redirected to a FortiGuard web filtering block page. <br \/>\r<br><br><img decoding=\"async\" width=650 height=308 id=\"\u56fe\u7247 17\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image015-16.jpg\"><br><br \/>\r<br>Based on the exhibit, which configuration change can the administrator make to allow Twitter while blocking all other social networking sites?<\/div><input type='hidden' name='question_id[]' id='qID_27' value='367567' \/><input type='hidden' id='answerType367567' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367567[]' id='answer-id-1432093' class='answer   answerof-367567 ' value='1432093'   \/><label for='answer-id-1432093' id='answer-label-1432093' class=' answer'><span>On the FortiGuard Category Based Filter configuration, set Action to Warning for Social Networking.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367567[]' id='answer-id-1432094' class='answer   answerof-367567 ' value='1432094'   \/><label for='answer-id-1432094' id='answer-label-1432094' class=' answer'><span>On the Static URL Filter configuration, set Type to Simple.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367567[]' id='answer-id-1432095' class='answer   answerof-367567 ' value='1432095'   \/><label for='answer-id-1432095' id='answer-label-1432095' class=' answer'><span>On the Static URL Filter configuration, set Action to Exempt.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367567[]' id='answer-id-1432096' class='answer   answerof-367567 ' value='1432096'   \/><label for='answer-id-1432096' id='answer-label-1432096' class=' answer'><span>On the Static URL Filter configuration, set Action to Monitor.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-28' style=';'><div id='questionWrap-28'  class='   watupro-question-id-367568'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>28. <\/span>Which three statements explain a flow-based antivirus profile? (Choose three.) <br \/>\r<br>A. Flow-based inspection uses a hybrid of the scanning modes available in proxy-based inspection. <br \/>\r<br>B. If a virus is detected, the last packet is delivered to the client. <br \/>\r<br>C. The IPS engine handles the process as a standalone. <br \/>\r<br>D. FortiGate buffers the whole file but transmits to the client at the same time. <br \/>\r<br>E. Flow-based inspection optimizes performance compared to proxy-based inspection.<\/div><input type='hidden' name='question_id[]' id='qID_28' value='367568' \/><input type='hidden' id='answerType367568' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367568[]' id='textarea_q_367568' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-29' style=';'><div id='questionWrap-29'  class='   watupro-question-id-367569'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>29. <\/span>Which three criteria can FortiGate use to look for a matching firewall policy to process traffic? (Choose three.) <br \/>\r<br>A. Services defined in the firewall policy <br \/>\r<br>B. Highest to lowest priority defined in the firewall policy <br \/>\r<br>C. Destination defined as Internet Services in the firewall policy <br \/>\r<br>D. Lowest to highest policy ID number <br \/>\r<br>E. Source defined as Internet Services in the firewall policy<\/div><input type='hidden' name='question_id[]' id='qID_29' value='367569' \/><input type='hidden' id='answerType367569' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367569[]' id='textarea_q_367569' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-30' style=';'><div id='questionWrap-30'  class='   watupro-question-id-367570'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>30. <\/span>What are two functions of ZTNA? (Choose two.) <br \/>\r<br>A. ZTNA manages access through the client only. <br \/>\r<br>B. ZTNA manages access for remote users only. <br \/>\r<br>C. ZTNA provides a security posture check. <br \/>\r<br>D. ZTNA provides role-based access.<\/div><input type='hidden' name='question_id[]' id='qID_30' value='367570' \/><input type='hidden' id='answerType367570' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367570[]' id='textarea_q_367570' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-31' style=';'><div id='questionWrap-31'  class='   watupro-question-id-367571'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>31. <\/span>A network administrator is configuring a new IPsec VPN tunnel on FortiGate. The remote peer IP address is dynamic. In addition, the remote peer does not support a dynamic DNS update service. <br \/>\r<br>Which type of remote gateway should the administrator configure on FortiGate for the new IPsec VPN tunnel to work?<\/div><input type='hidden' name='question_id[]' id='qID_31' value='367571' \/><input type='hidden' id='answerType367571' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367571[]' id='answer-id-1432100' class='answer   answerof-367571 ' value='1432100'   \/><label for='answer-id-1432100' id='answer-label-1432100' class=' answer'><span>Pre-shared key<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367571[]' id='answer-id-1432101' class='answer   answerof-367571 ' value='1432101'   \/><label for='answer-id-1432101' id='answer-label-1432101' class=' answer'><span>Dialup user<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367571[]' id='answer-id-1432102' class='answer   answerof-367571 ' value='1432102'   \/><label for='answer-id-1432102' id='answer-label-1432102' class=' answer'><span>Dynamic DNS<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367571[]' id='answer-id-1432103' class='answer   answerof-367571 ' value='1432103'   \/><label for='answer-id-1432103' id='answer-label-1432103' class=' answer'><span>Static IP address<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-32' style=';'><div id='questionWrap-32'  class='   watupro-question-id-367572'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>32. <\/span>Which timeout setting can be responsible for deleting SSL VPN associated sessions?<\/div><input type='hidden' name='question_id[]' id='qID_32' value='367572' \/><input type='hidden' id='answerType367572' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367572[]' id='answer-id-1432104' class='answer   answerof-367572 ' value='1432104'   \/><label for='answer-id-1432104' id='answer-label-1432104' class=' answer'><span>SSL VPN idle-timeout<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367572[]' id='answer-id-1432105' class='answer   answerof-367572 ' value='1432105'   \/><label for='answer-id-1432105' id='answer-label-1432105' class=' answer'><span>SSL VPN http-request-body-timeout<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367572[]' id='answer-id-1432106' class='answer   answerof-367572 ' value='1432106'   \/><label for='answer-id-1432106' id='answer-label-1432106' class=' answer'><span>SSL VPN login-timeout<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367572[]' id='answer-id-1432107' class='answer   answerof-367572 ' value='1432107'   \/><label for='answer-id-1432107' id='answer-label-1432107' class=' answer'><span>SSL VPN dtls-hello-timeout<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-33' style=';'><div id='questionWrap-33'  class='   watupro-question-id-367573'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>33. <\/span>Which statement is correct regarding the use of application control for inspecting web applications?<\/div><input type='hidden' name='question_id[]' id='qID_33' value='367573' \/><input type='hidden' id='answerType367573' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367573[]' id='answer-id-1432108' class='answer   answerof-367573 ' value='1432108'   \/><label for='answer-id-1432108' id='answer-label-1432108' class=' answer'><span>Application control can identify child and parent applications, and perform different actions on them.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367573[]' id='answer-id-1432109' class='answer   answerof-367573 ' value='1432109'   \/><label for='answer-id-1432109' id='answer-label-1432109' class=' answer'><span>Application control signatures are organized in a nonhierarchical structure.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367573[]' id='answer-id-1432110' class='answer   answerof-367573 ' value='1432110'   \/><label for='answer-id-1432110' id='answer-label-1432110' class=' answer'><span>Application control does not require SSL inspection to identify web applications.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367573[]' id='answer-id-1432111' class='answer   answerof-367573 ' value='1432111'   \/><label for='answer-id-1432111' id='answer-label-1432111' class=' answer'><span>Application control does not display a replacement message for a blocked web application.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-34' style=';'><div id='questionWrap-34'  class='   watupro-question-id-367574'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>34. <\/span>A network administrator enabled antivirus and selected an SSL inspection profile on a firewall policy. When downloading an EICAR test file through HTTP, FortiGate detects the virus and blocks the file. When downloading the same file through HTTPS, FortiGate does not detect the virus and does not block the file, allowing it to be downloaded. <br \/>\r<br>The administrator confirms that the traffic matches the configured firewall policy. <br \/>\r<br>What are two reasons for the failed virus detection by FortiGate? (Choose two.) <br \/>\r<br>A. The website is exempted from SSL inspection. <br \/>\r<br>B. The EICAR test file exceeds the protocol options oversize limit. <br \/>\r<br>C. The selected SSL inspection profile has certificate inspection enabled. <br \/>\r<br>D. The browser does not trust the FortiGate self-signed CA certificate.<\/div><input type='hidden' name='question_id[]' id='qID_34' value='367574' \/><input type='hidden' id='answerType367574' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367574[]' id='textarea_q_367574' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-35' style=';'><div id='questionWrap-35'  class='   watupro-question-id-367575'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>35. <\/span>Refer to the exhibits. <br \/>\r<br><br><img decoding=\"async\" width=649 height=358 id=\"\u56fe\u7247 18\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image016-1.png\"><br><br \/>\r<br><br><img decoding=\"async\" width=560 height=319 id=\"\u56fe\u7247 19\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image017-2.png\"><br><br \/>\r<br>Exhibit A shows a topology for a FortiGate HA cluster that performs proxy-based inspection on traffic. <br \/>\r<br>Exhibit B shows the HA configuration and the partial output of the get system ha status command. <br \/>\r<br>Based on the exhibits, which two statements about the traffic passing through the cluster are true? (Choose two.) <br \/>\r<br>A. For non-load balanced connections, packets forwarded by the cluster to the server contain the virtual MAC address of port2 as source. <br \/>\r<br>B. The traffic sourced from the client and destined to the server is sent to FGT-1. <br \/>\r<br>C. The cluster can load balance ICMP connections to the secondary. <br \/>\r<br>D. For load balanced connections, the primary encapsulates TCP SYN packets before forwarding them <br \/>\r<br>to the secondary.<\/div><input type='hidden' name='question_id[]' id='qID_35' value='367575' \/><input type='hidden' id='answerType367575' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367575[]' id='textarea_q_367575' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-36' style=';'><div id='questionWrap-36'  class='   watupro-question-id-367576'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>36. <\/span>Which two attributes are required on a certificate so it can be used as a CA certificate on SSL inspection? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_36' value='367576' \/><input type='hidden' id='answerType367576' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367576[]' id='answer-id-1432114' class='answer   answerof-367576 ' value='1432114'   \/><label for='answer-id-1432114' id='answer-label-1432114' class=' answer'><span>The keyUsage extension must be set to keyCertSign.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367576[]' id='answer-id-1432115' class='answer   answerof-367576 ' value='1432115'   \/><label for='answer-id-1432115' id='answer-label-1432115' class=' answer'><span>The CA extension must be set to TRU<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367576[]' id='answer-id-1432116' class='answer   answerof-367576 ' value='1432116'   \/><label for='answer-id-1432116' id='answer-label-1432116' class=' answer'><span>The issuer must be a public C<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367576[]' id='answer-id-1432117' class='answer   answerof-367576 ' value='1432117'   \/><label for='answer-id-1432117' id='answer-label-1432117' class=' answer'><span>The common name on the subject field must use a wildcard name.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-37' style=';'><div id='questionWrap-37'  class='   watupro-question-id-367577'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>37. <\/span>Which two configuration settings are global settings? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_37' value='367577' \/><input type='hidden' id='answerType367577' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367577[]' id='answer-id-1432118' class='answer   answerof-367577 ' value='1432118'   \/><label for='answer-id-1432118' id='answer-label-1432118' class=' answer'><span>User &amp; Device settings<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367577[]' id='answer-id-1432119' class='answer   answerof-367577 ' value='1432119'   \/><label for='answer-id-1432119' id='answer-label-1432119' class=' answer'><span>Firewall policies<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367577[]' id='answer-id-1432120' class='answer   answerof-367577 ' value='1432120'   \/><label for='answer-id-1432120' id='answer-label-1432120' class=' answer'><span>HA settings<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367577[]' id='answer-id-1432121' class='answer   answerof-367577 ' value='1432121'   \/><label for='answer-id-1432121' id='answer-label-1432121' class=' answer'><span>FortiGuard settings<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-38' style=';'><div id='questionWrap-38'  class='   watupro-question-id-367578'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>38. <\/span>Which additional load balancing method is supported in equal cost multipath (ECMP) load balancing when SD-WAN is enabled?<\/div><input type='hidden' name='question_id[]' id='qID_38' value='367578' \/><input type='hidden' id='answerType367578' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367578[]' id='answer-id-1432122' class='answer   answerof-367578 ' value='1432122'   \/><label for='answer-id-1432122' id='answer-label-1432122' class=' answer'><span>Volume based<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367578[]' id='answer-id-1432123' class='answer   answerof-367578 ' value='1432123'   \/><label for='answer-id-1432123' id='answer-label-1432123' class=' answer'><span>Source-destination IP based<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367578[]' id='answer-id-1432124' class='answer   answerof-367578 ' value='1432124'   \/><label for='answer-id-1432124' id='answer-label-1432124' class=' answer'><span>Source IP based<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367578[]' id='answer-id-1432125' class='answer   answerof-367578 ' value='1432125'   \/><label for='answer-id-1432125' id='answer-label-1432125' class=' answer'><span>Weight based<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-39' style=';'><div id='questionWrap-39'  class='   watupro-question-id-367579'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>39. <\/span>Examine the exhibit, which shows a firewall policy configured with multiple security profiles. <br \/>\r<br><br><img decoding=\"async\" width=567 height=550 id=\"\u56fe\u7247 20\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image018-2.png\"><br><br \/>\r<br>Which two security profiles are handled by the IPS engine? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_39' value='367579' \/><input type='hidden' id='answerType367579' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367579[]' id='answer-id-1432126' class='answer   answerof-367579 ' value='1432126'   \/><label for='answer-id-1432126' id='answer-label-1432126' class=' answer'><span>Web Filter<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367579[]' id='answer-id-1432127' class='answer   answerof-367579 ' value='1432127'   \/><label for='answer-id-1432127' id='answer-label-1432127' class=' answer'><span>IPS<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367579[]' id='answer-id-1432128' class='answer   answerof-367579 ' value='1432128'   \/><label for='answer-id-1432128' id='answer-label-1432128' class=' answer'><span>AntiVirus<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367579[]' id='answer-id-1432129' class='answer   answerof-367579 ' value='1432129'   \/><label for='answer-id-1432129' id='answer-label-1432129' class=' answer'><span>Application Control<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-40' style=';'><div id='questionWrap-40'  class='   watupro-question-id-367580'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>40. <\/span>Which two statements correctly describe the differences between IPsec main mode and IPsec aggressive mode? (Choose two.) <br \/>\r<br>A. The first packet of aggressive mode contains the peer ID, while the first packet of main mode does not. <br \/>\r<br>B. Main mode cannot be used for dialup VPNs, while aggressive mode can. <br \/>\r<br>C. Aggressive mode supports XAuth, while main mode does not. <br \/>\r<br>D. Six packets are usually exchanged during main mode, while only three packets are exchanged during aggressive mode.<\/div><input type='hidden' name='question_id[]' id='qID_40' value='367580' \/><input type='hidden' id='answerType367580' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367580[]' id='textarea_q_367580' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-41' style=';'><div id='questionWrap-41'  class='   watupro-question-id-367581'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>41. <\/span>What does the command diagnose debug fsso-polling refresh-user do?<\/div><input type='hidden' name='question_id[]' id='qID_41' value='367581' \/><input type='hidden' id='answerType367581' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367581[]' id='answer-id-1432131' class='answer   answerof-367581 ' value='1432131'   \/><label for='answer-id-1432131' id='answer-label-1432131' class=' answer'><span>It refreshes all users learned through agentless polling.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367581[]' id='answer-id-1432132' class='answer   answerof-367581 ' value='1432132'   \/><label for='answer-id-1432132' id='answer-label-1432132' class=' answer'><span>It displays status information and some statistics related to the polls done by FortiGate on each D<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367581[]' id='answer-id-1432133' class='answer   answerof-367581 ' value='1432133'   \/><label for='answer-id-1432133' id='answer-label-1432133' class=' answer'><span>It refreshes user group information from any servers connected to FortiGate using a collector agent.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367581[]' id='answer-id-1432134' class='answer   answerof-367581 ' value='1432134'   \/><label for='answer-id-1432134' id='answer-label-1432134' class=' answer'><span>It enables agentless polling mode real-time debug.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-42' style=';'><div id='questionWrap-42'  class='   watupro-question-id-367582'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>42. <\/span>View the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=598 height=294 id=\"\u56fe\u7247 21\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image019.png\"><br><br \/>\r<br>Both VDOMs are operating in NAT\/route mode. The subnet 10.0.1.0\/24 is connected to VDOM1. The subnet 10.0.2.0\/24 is connected to VDOM2. There is an inter-VDOM link between VDOM1 and VDOM2. Also, necessary firewall policies are configured in VDOM1 and VDOM2. <br \/>\r<br>Which two static routes are required in the FortiGate configuration, to route traffic between both subnets through an inter-VDOM link? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_42' value='367582' \/><input type='hidden' id='answerType367582' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367582[]' id='answer-id-1432135' class='answer   answerof-367582 ' value='1432135'   \/><label for='answer-id-1432135' id='answer-label-1432135' class=' answer'><span>A static route in VDOM1 with the destination subnet matching the subnet assigned to the inter-VDOM link<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367582[]' id='answer-id-1432136' class='answer   answerof-367582 ' value='1432136'   \/><label for='answer-id-1432136' id='answer-label-1432136' class=' answer'><span>A static route in VDOM2 for the destination subnet 10.0.1.0\/24<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367582[]' id='answer-id-1432137' class='answer   answerof-367582 ' value='1432137'   \/><label for='answer-id-1432137' id='answer-label-1432137' class=' answer'><span>A static route in VDOM1 for the destination subnet 10.0.2.0\/24<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367582[]' id='answer-id-1432138' class='answer   answerof-367582 ' value='1432138'   \/><label for='answer-id-1432138' id='answer-label-1432138' class=' answer'><span>A static route in VDOM2 with the destination subnet matching the subnet assigned to the inter-VDOM link<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-43' style=';'><div id='questionWrap-43'  class='   watupro-question-id-367583'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>43. <\/span>An administrator configured the antivirus profile in a firewall policy set to flow-based inspection mode. While testing the configuration, the administrator noticed that eicar.com test files can be downloaded using HTTPS protocol only. <br \/>\r<br>What is causing this issue?<\/div><input type='hidden' name='question_id[]' id='qID_43' value='367583' \/><input type='hidden' id='answerType367583' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367583[]' id='answer-id-1432139' class='answer   answerof-367583 ' value='1432139'   \/><label for='answer-id-1432139' id='answer-label-1432139' class=' answer'><span>Hardware acceleration is in use.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367583[]' id='answer-id-1432140' class='answer   answerof-367583 ' value='1432140'   \/><label for='answer-id-1432140' id='answer-label-1432140' class=' answer'><span>The test file is larger than the oversize limit.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367583[]' id='answer-id-1432141' class='answer   answerof-367583 ' value='1432141'   \/><label for='answer-id-1432141' id='answer-label-1432141' class=' answer'><span>HTTPS protocol is not enabled under Inspected Protocols.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367583[]' id='answer-id-1432142' class='answer   answerof-367583 ' value='1432142'   \/><label for='answer-id-1432142' id='answer-label-1432142' class=' answer'><span>Full SSL inspection is disabled.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-44' style=';'><div id='questionWrap-44'  class='   watupro-question-id-367584'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>44. <\/span>An administrator wants to monitor their network for any probing attempts aimed to exploit existing vulnerabilities in their servers. <br \/>\r<br>Which two items must they configure on their FortiGate to accomplish this? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_44' value='367584' \/><input type='hidden' id='answerType367584' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367584[]' id='answer-id-1432143' class='answer   answerof-367584 ' value='1432143'   \/><label for='answer-id-1432143' id='answer-label-1432143' class=' answer'><span>A web application firewall profile to check protocol constraints<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367584[]' id='answer-id-1432144' class='answer   answerof-367584 ' value='1432144'   \/><label for='answer-id-1432144' id='answer-label-1432144' class=' answer'><span>A DoS policy, and log all UDP and TCP scan attempts<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367584[]' id='answer-id-1432145' class='answer   answerof-367584 ' value='1432145'   \/><label for='answer-id-1432145' id='answer-label-1432145' class=' answer'><span>An IPS sensor to monitor all signatures applicable to the server<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367584[]' id='answer-id-1432146' class='answer   answerof-367584 ' value='1432146'   \/><label for='answer-id-1432146' id='answer-label-1432146' class=' answer'><span>An application control profile, and set all application signatures to monitor<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-45' style=';'><div id='questionWrap-45'  class='   watupro-question-id-367585'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>45. <\/span>Which three settings and protocols can be used to provide secure and restrictive administrative access to FortiGate? (Choose three.) <br \/>\r<br>A. SSH <br \/>\r<br>B. FortiTelemetry <br \/>\r<br>C. Trusted host <br \/>\r<br>D. HTTPS <br \/>\r<br>E. Trusted authentication<\/div><input type='hidden' name='question_id[]' id='qID_45' value='367585' \/><input type='hidden' id='answerType367585' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367585[]' id='textarea_q_367585' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-46' style=';'><div id='questionWrap-46'  class='   watupro-question-id-367586'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>46. <\/span>Which statement about firewall policy NAT is true?<\/div><input type='hidden' name='question_id[]' id='qID_46' value='367586' \/><input type='hidden' id='answerType367586' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367586[]' id='answer-id-1432148' class='answer   answerof-367586 ' value='1432148'   \/><label for='answer-id-1432148' id='answer-label-1432148' class=' answer'><span>DNAT is not supported.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367586[]' id='answer-id-1432149' class='answer   answerof-367586 ' value='1432149'   \/><label for='answer-id-1432149' id='answer-label-1432149' class=' answer'><span>DNAT can automatically apply to multiple firewall policies, based on DNAT rules.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367586[]' id='answer-id-1432150' class='answer   answerof-367586 ' value='1432150'   \/><label for='answer-id-1432150' id='answer-label-1432150' class=' answer'><span>You must configure SNAT for each firewall policy.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367586[]' id='answer-id-1432151' class='answer   answerof-367586 ' value='1432151'   \/><label for='answer-id-1432151' id='answer-label-1432151' class=' answer'><span>SNAT can automatically apply to multiple firewall policies, based on SNAT rules.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-47' style=';'><div id='questionWrap-47'  class='   watupro-question-id-367587'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>47. <\/span>Which statement about traffic flow in an active-active HA cluster is true? <br \/>\r<br>A. The SYN packet from the client always arrives at the primary device first. <br \/>\r<br>B. The secondary device responds to the primary device with a SYN\/ACK, and then the primary device forwards the SYN\/ACK to the client. <br \/>\r<br>C. All FortiGate devices are assigned the same virtual MAC addresses for the HA heartbeat interfaces to redistribute to the sessions. <br \/>\r<br>D. The ACK from the client is received on the physical MAC address of the primary device.<\/div><input type='hidden' name='question_id[]' id='qID_47' value='367587' \/><input type='hidden' id='answerType367587' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367587[]' id='textarea_q_367587' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-48' style=';'><div id='questionWrap-48'  class='   watupro-question-id-367588'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>48. <\/span>Which two statements about incoming and outgoing interfaces in firewall policies are true? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_48' value='367588' \/><input type='hidden' id='answerType367588' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367588[]' id='answer-id-1432153' class='answer   answerof-367588 ' value='1432153'   \/><label for='answer-id-1432153' id='answer-label-1432153' class=' answer'><span>Only the &quot;any&quot; interface can be chosen as an incoming interface.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367588[]' id='answer-id-1432154' class='answer   answerof-367588 ' value='1432154'   \/><label for='answer-id-1432154' id='answer-label-1432154' class=' answer'><span>An incoming interface is mandatory in a firewall policy, but an outgoing interface is optional.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367588[]' id='answer-id-1432155' class='answer   answerof-367588 ' value='1432155'   \/><label for='answer-id-1432155' id='answer-label-1432155' class=' answer'><span>Multiple interfaces can be selected as incoming and outgoing interfaces.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367588[]' id='answer-id-1432156' class='answer   answerof-367588 ' value='1432156'   \/><label for='answer-id-1432156' id='answer-label-1432156' class=' answer'><span>A zone can be chosen as the outgoing interface.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-49' style=';'><div id='questionWrap-49'  class='   watupro-question-id-367589'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>49. <\/span>View the exhibit. <br \/>\r<br>date=2022-06-14 time=14:45:16 logid=0317013312 type=utm subtype=webfilter eventtype=ftgd_allow level=notice vd=&quot;root&quot; policyid=2 identidx=1 sessionid=31232959 user=&quot;anonymous&quot; group=&quot;ldap_users&quot; srcip=192.168.1.24 srcport=63355 srcintf=&quot;port2&quot; dstip=66.171.121.44 dstport=80 dstintf=&quot;port1&quot; service=&quot;http&quot; hostname=&quot;www.fortinet.com&quot; profiletype=&quot;Webfilter_Profile&quot; profile=&quot;default&quot; status=&quot;passthrough&quot; reqtype=&quot;direct&quot; url=&quot;\/&quot; sentbyte=304 rcvdbyte=60135 msg=&quot;URL belongs to an allowed category in policy&quot; method=domain class=0 cat=140 catdesc=&quot;custom1&quot; <br \/>\r<br>What two things does this raw log indicate? (Choose two.) <br \/>\r<br>A. FortiGate allowed the traffic to pass. <br \/>\r<br>B. 192.168.1.24 is the IP address for www.fortinet.com. <br \/>\r<br>C. The traffic matches the webfilter profile on firewall policy ID 2. <br \/>\r<br>D. The traffic originated from 66.171.121.44.<\/div><input type='hidden' name='question_id[]' id='qID_49' value='367589' \/><input type='hidden' id='answerType367589' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367589[]' id='textarea_q_367589' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-50' style=';'><div id='questionWrap-50'  class='   watupro-question-id-367590'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>50. <\/span>Refer to the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=649 height=86 id=\"\u56fe\u7247 3\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image020-12.jpg\"><br><br \/>\r<br>FortiGate is configured for firewall authentication. When attempting to access an external website, the user is not presented with a login prompt. <br \/>\r<br>What is the most likely reason for this situation?<\/div><input type='hidden' name='question_id[]' id='qID_50' value='367590' \/><input type='hidden' id='answerType367590' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367590[]' id='answer-id-1432158' class='answer   answerof-367590 ' value='1432158'   \/><label for='answer-id-1432158' id='answer-label-1432158' class=' answer'><span>No matching user account exists for this user.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367590[]' id='answer-id-1432159' class='answer   answerof-367590 ' value='1432159'   \/><label for='answer-id-1432159' id='answer-label-1432159' class=' answer'><span>The user is using a guest account profile.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367590[]' id='answer-id-1432160' class='answer   answerof-367590 ' value='1432160'   \/><label for='answer-id-1432160' id='answer-label-1432160' class=' answer'><span>The user was authenticated using passive authentication.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367590[]' id='answer-id-1432161' class='answer   answerof-367590 ' value='1432161'   \/><label for='answer-id-1432161' id='answer-label-1432161' class=' answer'><span>The user is using a super admin account.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-51' style=';'><div id='questionWrap-51'  class='   watupro-question-id-367591'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>51. <\/span>An administrator has configured central DNAT and virtual IPs. <br \/>\r<br>Which item can be selected in the firewall policy Destination field?<\/div><input type='hidden' name='question_id[]' id='qID_51' value='367591' \/><input type='hidden' id='answerType367591' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367591[]' id='answer-id-1432162' class='answer   answerof-367591 ' value='1432162'   \/><label for='answer-id-1432162' id='answer-label-1432162' class=' answer'><span>An IP pool<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367591[]' id='answer-id-1432163' class='answer   answerof-367591 ' value='1432163'   \/><label for='answer-id-1432163' id='answer-label-1432163' class=' answer'><span>A VIP object<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367591[]' id='answer-id-1432164' class='answer   answerof-367591 ' value='1432164'   \/><label for='answer-id-1432164' id='answer-label-1432164' class=' answer'><span>A VIP group<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367591[]' id='answer-id-1432165' class='answer   answerof-367591 ' value='1432165'   \/><label for='answer-id-1432165' id='answer-label-1432165' class=' answer'><span>The mapped IP address object of the VIP object<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-52' style=';'><div id='questionWrap-52'  class='   watupro-question-id-367592'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>52. <\/span>Which three actions are valid for static URL filtering? (Choose three.) <br \/>\r<br>A. Block <br \/>\r<br>B. Warning <br \/>\r<br>C. Shape <br \/>\r<br>D. Exempt <br \/>\r<br>E. Allow<\/div><input type='hidden' name='question_id[]' id='qID_52' value='367592' \/><input type='hidden' id='answerType367592' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367592[]' id='textarea_q_367592' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-53' style=';'><div id='questionWrap-53'  class='   watupro-question-id-367593'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>53. <\/span>Which two settings must you configure when FortiGate is being deployed as a root FortiGate in a Security Fabric topology? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_53' value='367593' \/><input type='hidden' id='answerType367593' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367593[]' id='answer-id-1432167' class='answer   answerof-367593 ' value='1432167'   \/><label for='answer-id-1432167' id='answer-label-1432167' class=' answer'><span>FortiManager IP address<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367593[]' id='answer-id-1432168' class='answer   answerof-367593 ' value='1432168'   \/><label for='answer-id-1432168' id='answer-label-1432168' class=' answer'><span>FortiAnalyzer IP address<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367593[]' id='answer-id-1432169' class='answer   answerof-367593 ' value='1432169'   \/><label for='answer-id-1432169' id='answer-label-1432169' class=' answer'><span>Pre-authorize downstream FortiGate devices<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367593[]' id='answer-id-1432170' class='answer   answerof-367593 ' value='1432170'   \/><label for='answer-id-1432170' id='answer-label-1432170' class=' answer'><span>Fabric name<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-54' style=';'><div id='questionWrap-54'  class='   watupro-question-id-367594'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>54. <\/span>Which two statements about the application control profile mode are true? (Choose two.) <br \/>\r<br>A. It uses flow-based scanning techniques, regardless of the inspection mode used. <br \/>\r<br>B. It cannot be used in conjunction with IPS scanning. <br \/>\r<br>C. It can be selected in either flow-based or proxy-based firewall policy. <br \/>\r<br>D. It can scan only unsecure protocols.<\/div><input type='hidden' name='question_id[]' id='qID_54' value='367594' \/><input type='hidden' id='answerType367594' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367594[]' id='textarea_q_367594' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-55' style=';'><div id='questionWrap-55'  class='   watupro-question-id-367595'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>55. <\/span>Which are two benefits of using SD-WAN? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_55' value='367595' \/><input type='hidden' id='answerType367595' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367595[]' id='answer-id-1432172' class='answer   answerof-367595 ' value='1432172'   \/><label for='answer-id-1432172' id='answer-label-1432172' class=' answer'><span>FortiGate performs per-packet distribution across multiple SD-WAN members.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367595[]' id='answer-id-1432173' class='answer   answerof-367595 ' value='1432173'   \/><label for='answer-id-1432173' id='answer-label-1432173' class=' answer'><span>WAN is used effectively.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367595[]' id='answer-id-1432174' class='answer   answerof-367595 ' value='1432174'   \/><label for='answer-id-1432174' id='answer-label-1432174' class=' answer'><span>Application steering is available.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367595[]' id='answer-id-1432175' class='answer   answerof-367595 ' value='1432175'   \/><label for='answer-id-1432175' id='answer-label-1432175' class=' answer'><span>Firewall policies are not required.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-56' style=';'><div id='questionWrap-56'  class='   watupro-question-id-367596'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>56. <\/span>Which two statements about advanced AD access mode for the FSSO collector, agent are true? (Choose two.) <br \/>\r<br>A. FortiGate can act as an LDAP client to configure the group filters. <br \/>\r<br>B. It uses the Windows convention for naming; that is, DomainUsername. <br \/>\r<br>C. It supports monitoring of nested groups. <br \/>\r<br>D. It is only supported if DC agents are deployed.<\/div><input type='hidden' name='question_id[]' id='qID_56' value='367596' \/><input type='hidden' id='answerType367596' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367596[]' id='textarea_q_367596' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-57' style=';'><div id='questionWrap-57'  class='   watupro-question-id-367597'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>57. <\/span>An administrator needs to create a tunnel mode SSL-VPN to access an internal web server from the Internet. The web server is connected to port1. The Internet is connected to port2. Both interfaces belong to the VDOM named Corporation. <br \/>\r<br>What interface must be used as the source for the firewall policy that will allow this traffic?<\/div><input type='hidden' name='question_id[]' id='qID_57' value='367597' \/><input type='hidden' id='answerType367597' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367597[]' id='answer-id-1432177' class='answer   answerof-367597 ' value='1432177'   \/><label for='answer-id-1432177' id='answer-label-1432177' class=' answer'><span>ssl.root<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367597[]' id='answer-id-1432178' class='answer   answerof-367597 ' value='1432178'   \/><label for='answer-id-1432178' id='answer-label-1432178' class=' answer'><span>ssl.Corporation<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367597[]' id='answer-id-1432179' class='answer   answerof-367597 ' value='1432179'   \/><label for='answer-id-1432179' id='answer-label-1432179' class=' answer'><span>port2<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367597[]' id='answer-id-1432180' class='answer   answerof-367597 ' value='1432180'   \/><label for='answer-id-1432180' id='answer-label-1432180' class=' answer'><span>port1<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-58' style=';'><div id='questionWrap-58'  class='   watupro-question-id-367598'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>58. <\/span>View the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=473 height=231 id=\"\u56fe\u7247 22\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image021.png\"><br><br \/>\r<br>Which two behaviors result from this full (deep) SSL configuration? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_58' value='367598' \/><input type='hidden' id='answerType367598' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367598[]' id='answer-id-1432181' class='answer   answerof-367598 ' value='1432181'   \/><label for='answer-id-1432181' id='answer-label-1432181' class=' answer'><span>The browser bypasses all certificate warnings and allows the connection.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367598[]' id='answer-id-1432182' class='answer   answerof-367598 ' value='1432182'   \/><label for='answer-id-1432182' id='answer-label-1432182' class=' answer'><span>A temporary trusted FortiGate certificate replaces the server certificate, even when the server certificate is untrusted.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367598[]' id='answer-id-1432183' class='answer   answerof-367598 ' value='1432183'   \/><label for='answer-id-1432183' id='answer-label-1432183' class=' answer'><span>A temporary trusted FortiGate certificate replaces the server certificate when the server certificate is trusted.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367598[]' id='answer-id-1432184' class='answer   answerof-367598 ' value='1432184'   \/><label for='answer-id-1432184' id='answer-label-1432184' class=' answer'><span>A temporary untrusted FortiGate certificate replaces the server certificate when the server certificate is untrusted.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-59' style=';'><div id='questionWrap-59'  class='   watupro-question-id-367599'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>59. <\/span>Which statement best describes the role of a DC agent in an FSSO DC agent mode solution?<\/div><input type='hidden' name='question_id[]' id='qID_59' value='367599' \/><input type='hidden' id='answerType367599' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367599[]' id='answer-id-1432185' class='answer   answerof-367599 ' value='1432185'   \/><label for='answer-id-1432185' id='answer-label-1432185' class=' answer'><span>It captures the login and logoff events and forwards them to the collector agent.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367599[]' id='answer-id-1432186' class='answer   answerof-367599 ' value='1432186'   \/><label for='answer-id-1432186' id='answer-label-1432186' class=' answer'><span>It captures the login events and forwards them to the collector agent.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367599[]' id='answer-id-1432187' class='answer   answerof-367599 ' value='1432187'   \/><label for='answer-id-1432187' id='answer-label-1432187' class=' answer'><span>It captures the login events and forwards them to FortiGate.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367599[]' id='answer-id-1432188' class='answer   answerof-367599 ' value='1432188'   \/><label for='answer-id-1432188' id='answer-label-1432188' class=' answer'><span>It captures the user IP address and workstation name and forwards them to FortiGate.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-60' style=';'><div id='questionWrap-60'  class='   watupro-question-id-367600'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>60. <\/span>Which two IP pool types enable you to identify user connections without having to log user traffic? (Choose two.) <br \/>\r<br>A. Fixed port range <br \/>\r<br>B. Port block allocation <br \/>\r<br>C. One-to-one <br \/>\r<br>D. Overload<\/div><input type='hidden' name='question_id[]' id='qID_60' value='367600' \/><input type='hidden' id='answerType367600' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367600[]' id='textarea_q_367600' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-61' style=';'><div id='questionWrap-61'  class='   watupro-question-id-367601'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>61. <\/span>An administrator wants to block https:\/\/www.example.com\/videos and allow all other URLs on the website. <br \/>\r<br>What are two configuration changes that the administrator can make to satisfy the requirement? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_61' value='367601' \/><input type='hidden' id='answerType367601' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367601[]' id='answer-id-1432190' class='answer   answerof-367601 ' value='1432190'   \/><label for='answer-id-1432190' id='answer-label-1432190' class=' answer'><span>Configure web override for the URL and select a blocked FortiGuard subcategory<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367601[]' id='answer-id-1432191' class='answer   answerof-367601 ' value='1432191'   \/><label for='answer-id-1432191' id='answer-label-1432191' class=' answer'><span>Enable full SSL inspection<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367601[]' id='answer-id-1432192' class='answer   answerof-367601 ' value='1432192'   \/><label for='answer-id-1432192' id='answer-label-1432192' class=' answer'><span>Configure a video filter profile to block the URL<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367601[]' id='answer-id-1432193' class='answer   answerof-367601 ' value='1432193'   \/><label for='answer-id-1432193' id='answer-label-1432193' class=' answer'><span>Configure a static URL filter entry for the URL and select Block as the action<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-62' style=';'><div id='questionWrap-62'  class='   watupro-question-id-367602'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>62. <\/span>Which three methods can you use to deliver the token code to a user who is configured to use two-factor authentication? (Choose three.)<\/div><input type='hidden' name='question_id[]' id='qID_62' value='367602' \/><input type='hidden' id='answerType367602' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367602[]' id='answer-id-1432194' class='answer   answerof-367602 ' value='1432194'   \/><label for='answer-id-1432194' id='answer-label-1432194' class=' answer'><span>Instant message app<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367602[]' id='answer-id-1432195' class='answer   answerof-367602 ' value='1432195'   \/><label for='answer-id-1432195' id='answer-label-1432195' class=' answer'><span>FortiToken<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367602[]' id='answer-id-1432196' class='answer   answerof-367602 ' value='1432196'   \/><label for='answer-id-1432196' id='answer-label-1432196' class=' answer'><span>Email<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367602[]' id='answer-id-1432197' class='answer   answerof-367602 ' value='1432197'   \/><label for='answer-id-1432197' id='answer-label-1432197' class=' answer'><span>Voicemail message<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367602[]' id='answer-id-1432198' class='answer   answerof-367602 ' value='1432198'   \/><label for='answer-id-1432198' id='answer-label-1432198' class=' answer'><span>SMS text message<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-63' style=';'><div id='questionWrap-63'  class='   watupro-question-id-367603'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>63. <\/span>View the exhibit. <br \/>\r<br>A user at 192.168.32.15 is trying to access the web server at 172.16.32.254. <br \/>\r<br><br><img decoding=\"async\" width=624 height=418 id=\"\u56fe\u7247 23\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image022.png\"><br><br \/>\r<br>Which two statements best describe how the FortiGate will perform reverse path forwarding (RPF) <br \/>\r<br>checks on this traffic? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_63' value='367603' \/><input type='hidden' id='answerType367603' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367603[]' id='answer-id-1432199' class='answer   answerof-367603 ' value='1432199'   \/><label for='answer-id-1432199' id='answer-label-1432199' class=' answer'><span>Strict RPF check will deny the traffic.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367603[]' id='answer-id-1432200' class='answer   answerof-367603 ' value='1432200'   \/><label for='answer-id-1432200' id='answer-label-1432200' class=' answer'><span>Loose RPF check will allow the traffic.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367603[]' id='answer-id-1432201' class='answer   answerof-367603 ' value='1432201'   \/><label for='answer-id-1432201' id='answer-label-1432201' class=' answer'><span>Strict RPF check will allow the traffic.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367603[]' id='answer-id-1432202' class='answer   answerof-367603 ' value='1432202'   \/><label for='answer-id-1432202' id='answer-label-1432202' class=' answer'><span>Loose RPF check will deny the traffic.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-64' style=';'><div id='questionWrap-64'  class='   watupro-question-id-367604'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>64. <\/span>Which two statements about antivirus scanning in a firewall policy set to proxy-based inspection mode, are true? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_64' value='367604' \/><input type='hidden' id='answerType367604' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367604[]' id='answer-id-1432203' class='answer   answerof-367604 ' value='1432203'   \/><label for='answer-id-1432203' id='answer-label-1432203' class=' answer'><span>A file does not need to be buffered completely before it is moved to the antivirus engine for scanning.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367604[]' id='answer-id-1432204' class='answer   answerof-367604 ' value='1432204'   \/><label for='answer-id-1432204' id='answer-label-1432204' class=' answer'><span>The client must wait for the antivirus scan to finish scanning before it receives the file.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367604[]' id='answer-id-1432205' class='answer   answerof-367604 ' value='1432205'   \/><label for='answer-id-1432205' id='answer-label-1432205' class=' answer'><span>FortiGate sends a reset packet to the client if antivirus reports the file as infected.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367604[]' id='answer-id-1432206' class='answer   answerof-367604 ' value='1432206'   \/><label for='answer-id-1432206' id='answer-label-1432206' class=' answer'><span>If a virus is detected, a block replacement message is displayed immediately.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-65' style=';'><div id='questionWrap-65'  class='   watupro-question-id-367605'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>65. <\/span>Which two statements about FortiGate antivirus databases are true? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_65' value='367605' \/><input type='hidden' id='answerType367605' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367605[]' id='answer-id-1432207' class='answer   answerof-367605 ' value='1432207'   \/><label for='answer-id-1432207' id='answer-label-1432207' class=' answer'><span>The quick scan database is part of the normal database.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367605[]' id='answer-id-1432208' class='answer   answerof-367605 ' value='1432208'   \/><label for='answer-id-1432208' id='answer-label-1432208' class=' answer'><span>The extreme database is available only on certain FortiGate models.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367605[]' id='answer-id-1432209' class='answer   answerof-367605 ' value='1432209'   \/><label for='answer-id-1432209' id='answer-label-1432209' class=' answer'><span>The extended database is available on all FortiGate models.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367605[]' id='answer-id-1432210' class='answer   answerof-367605 ' value='1432210'   \/><label for='answer-id-1432210' id='answer-label-1432210' class=' answer'><span>The extended database is available only if AI scanning is enabled.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-66' style=';'><div id='questionWrap-66'  class='   watupro-question-id-367606'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>66. <\/span>Refer to the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=651 height=145 id=\"\u56fe\u7247 24\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image023-1.png\"><br><br \/>\r<br>The exhibit displays the output of the CLI command: diagnose sys ha dump-by vcluster. <br \/>\r<br>Which two statements are true? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_66' value='367606' \/><input type='hidden' id='answerType367606' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367606[]' id='answer-id-1432211' class='answer   answerof-367606 ' value='1432211'   \/><label for='answer-id-1432211' id='answer-label-1432211' class=' answer'><span>FortiGate SN FGVM010000065036 HA uptime has been reset.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367606[]' id='answer-id-1432212' class='answer   answerof-367606 ' value='1432212'   \/><label for='answer-id-1432212' id='answer-label-1432212' class=' answer'><span>FortiGate devices are not in sync because one device is down.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367606[]' id='answer-id-1432213' class='answer   answerof-367606 ' value='1432213'   \/><label for='answer-id-1432213' id='answer-label-1432213' class=' answer'><span>FortiGate SN FGVM010000064692 is the primary because of higher HA uptime.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367606[]' id='answer-id-1432214' class='answer   answerof-367606 ' value='1432214'   \/><label for='answer-id-1432214' id='answer-label-1432214' class=' answer'><span>FortiGate SN FGVM010000064692 has the higher HA priority.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-67' style=';'><div id='questionWrap-67'  class='   watupro-question-id-367607'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>67. <\/span>Refer to the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=649 height=235 id=\"\u56fe\u7247 25\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image024-1.png\"><br><br \/>\r<br>Examine the intrusion prevention system (IPS) diagnostic command. <br \/>\r<br>Which statement is correct If option 5 was used with the IPS diagnostic command and the outcome was a decrease in the CPU usage?<\/div><input type='hidden' name='question_id[]' id='qID_67' value='367607' \/><input type='hidden' id='answerType367607' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367607[]' id='answer-id-1432215' class='answer   answerof-367607 ' value='1432215'   \/><label for='answer-id-1432215' id='answer-label-1432215' class=' answer'><span>The IPS engine was inspecting high volume of traffic.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367607[]' id='answer-id-1432216' class='answer   answerof-367607 ' value='1432216'   \/><label for='answer-id-1432216' id='answer-label-1432216' class=' answer'><span>The IPS engine was unable to prevent an intrusion attack.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367607[]' id='answer-id-1432217' class='answer   answerof-367607 ' value='1432217'   \/><label for='answer-id-1432217' id='answer-label-1432217' class=' answer'><span>The IPS engine was blocking all traffic.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367607[]' id='answer-id-1432218' class='answer   answerof-367607 ' value='1432218'   \/><label for='answer-id-1432218' id='answer-label-1432218' class=' answer'><span>The IPS engine will continue to run in a normal state.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-68' style=';'><div id='questionWrap-68'  class='   watupro-question-id-367608'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>68. <\/span>Refer to the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=649 height=486 id=\"\u56fe\u7247 26\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image025-10.jpg\"><br><br \/>\r<br>A network administrator is troubleshooting an IPsec tunnel between two FortiGate devices. The administrator has determined that phase 1 status is up, but phase 2 fails to come up. <br \/>\r<br>Based on the phase 2 configuration shown in the exhibit, what configuration change will bring phase 2 up?<\/div><input type='hidden' name='question_id[]' id='qID_68' value='367608' \/><input type='hidden' id='answerType367608' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367608[]' id='answer-id-1432219' class='answer   answerof-367608 ' value='1432219'   \/><label for='answer-id-1432219' id='answer-label-1432219' class=' answer'><span>On HQ-FortiGate, enable Diffie-Hellman Group 2.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367608[]' id='answer-id-1432220' class='answer   answerof-367608 ' value='1432220'   \/><label for='answer-id-1432220' id='answer-label-1432220' class=' answer'><span>On HQ-FortiGate, enable Auto-negotiate.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367608[]' id='answer-id-1432221' class='answer   answerof-367608 ' value='1432221'   \/><label for='answer-id-1432221' id='answer-label-1432221' class=' answer'><span>On Remote-FortiGate, set Seconds to 43200.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367608[]' id='answer-id-1432222' class='answer   answerof-367608 ' value='1432222'   \/><label for='answer-id-1432222' id='answer-label-1432222' class=' answer'><span>On HQ-FortiGate, set Encryption to AES256.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-69' style=';'><div id='questionWrap-69'  class='   watupro-question-id-367609'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>69. <\/span>Which three options are the remote log storage options you can configure on FortiGate? (Choose three.) <br \/>\r<br>A. FortiSIEM <br \/>\r<br>B. FortiCloud <br \/>\r<br>C. FortiCache <br \/>\r<br>D. FortiSandbox <br \/>\r<br>E. FortiAnalyzer<\/div><input type='hidden' name='question_id[]' id='qID_69' value='367609' \/><input type='hidden' id='answerType367609' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367609[]' id='textarea_q_367609' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-70' style=';'><div id='questionWrap-70'  class='   watupro-question-id-367610'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>70. <\/span>Which two settings can be separately configured per VDOM on a FortiGate device? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_70' value='367610' \/><input type='hidden' id='answerType367610' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367610[]' id='answer-id-1432224' class='answer   answerof-367610 ' value='1432224'   \/><label for='answer-id-1432224' id='answer-label-1432224' class=' answer'><span>FortiGuard update servers<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367610[]' id='answer-id-1432225' class='answer   answerof-367610 ' value='1432225'   \/><label for='answer-id-1432225' id='answer-label-1432225' class=' answer'><span>System time<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367610[]' id='answer-id-1432226' class='answer   answerof-367610 ' value='1432226'   \/><label for='answer-id-1432226' id='answer-label-1432226' class=' answer'><span>Operating mode<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367610[]' id='answer-id-1432227' class='answer   answerof-367610 ' value='1432227'   \/><label for='answer-id-1432227' id='answer-label-1432227' class=' answer'><span>NGFW mode<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-71' style=';'><div id='questionWrap-71'  class='   watupro-question-id-367611'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>71. <\/span>Refer to the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=649 height=267 id=\"\u56fe\u7247 27\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image026-10.jpg\"><br><br \/>\r<br>Review the Intrusion Prevention System (IPS) profile signature settings. <br \/>\r<br>Which statement is correct in adding the FTP .Login.Failed signature to the IPS sensor profile?<\/div><input type='hidden' name='question_id[]' id='qID_71' value='367611' \/><input type='hidden' id='answerType367611' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367611[]' id='answer-id-1432228' class='answer   answerof-367611 ' value='1432228'   \/><label for='answer-id-1432228' id='answer-label-1432228' class=' answer'><span>Traffic matching the signature will be silently dropped and logged.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367611[]' id='answer-id-1432229' class='answer   answerof-367611 ' value='1432229'   \/><label for='answer-id-1432229' id='answer-label-1432229' class=' answer'><span>The signature setting uses a custom rating threshold.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367611[]' id='answer-id-1432230' class='answer   answerof-367611 ' value='1432230'   \/><label for='answer-id-1432230' id='answer-label-1432230' class=' answer'><span>The signature setting includes a group of other signatures.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367611[]' id='answer-id-1432231' class='answer   answerof-367611 ' value='1432231'   \/><label for='answer-id-1432231' id='answer-label-1432231' class=' answer'><span>Traffic matching the signature will be allowed and logged.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-72' style=';'><div id='questionWrap-72'  class='   watupro-question-id-367612'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>72. <\/span>Which two statements are correct regarding FortiGate FSSO agentless polling mode? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_72' value='367612' \/><input type='hidden' id='answerType367612' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367612[]' id='answer-id-1432232' class='answer   answerof-367612 ' value='1432232'   \/><label for='answer-id-1432232' id='answer-label-1432232' class=' answer'><span>FortiGate uses the AD server as the collector agent<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367612[]' id='answer-id-1432233' class='answer   answerof-367612 ' value='1432233'   \/><label for='answer-id-1432233' id='answer-label-1432233' class=' answer'><span>FortiGate uses the SMB protocol to read the event viewer logs from the DCs<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367612[]' id='answer-id-1432234' class='answer   answerof-367612 ' value='1432234'   \/><label for='answer-id-1432234' id='answer-label-1432234' class=' answer'><span>FortiGate points the collector agent to use a remote LDAP server<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367612[]' id='answer-id-1432235' class='answer   answerof-367612 ' value='1432235'   \/><label for='answer-id-1432235' id='answer-label-1432235' class=' answer'><span>FortiGate queries AD by using the LDAP to retrieve user group information<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-73' style=';'><div id='questionWrap-73'  class='   watupro-question-id-367613'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>73. <\/span>Which type of logs on FortiGate record information about traffic directly to and from the FortiGate management IP addresses? <br \/>\r<br>A. Local traffic logs <br \/>\r<br>B. Forward traffic logs <br \/>\r<br>C. System event logs <br \/>\r<br>D. Security logs<\/div><input type='hidden' name='question_id[]' id='qID_73' value='367613' \/><input type='hidden' id='answerType367613' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367613[]' id='textarea_q_367613' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-74' style=';'><div id='questionWrap-74'  class='   watupro-question-id-367614'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>74. <\/span>Which two inspection modes can you use to configure a firewall policy on a profile-based next-generation firewall (NGFW)? (Choose two.) <br \/>\r<br>A. Proxy-based inspection <br \/>\r<br>B. Certificate inspection <br \/>\r<br>C. Flow-based inspection <br \/>\r<br>D. Full Content inspection<\/div><input type='hidden' name='question_id[]' id='qID_74' value='367614' \/><input type='hidden' id='answerType367614' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367614[]' id='textarea_q_367614' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-75' style=';'><div id='questionWrap-75'  class='   watupro-question-id-367615'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>75. <\/span>An administrator wants to configure Dead Peer Detection (DPD) on IPSEC VPN for detecting dead tunnels. The requirement is that FortiGate sends DPD probes only when no traffic is observed in the tunnel. <br \/>\r<br>Which DPD mode on FortiGate will meet the above requirement?<\/div><input type='hidden' name='question_id[]' id='qID_75' value='367615' \/><input type='hidden' id='answerType367615' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367615[]' id='answer-id-1432238' class='answer   answerof-367615 ' value='1432238'   \/><label for='answer-id-1432238' id='answer-label-1432238' class=' answer'><span>Disabled<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367615[]' id='answer-id-1432239' class='answer   answerof-367615 ' value='1432239'   \/><label for='answer-id-1432239' id='answer-label-1432239' class=' answer'><span>On Demand<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367615[]' id='answer-id-1432240' class='answer   answerof-367615 ' value='1432240'   \/><label for='answer-id-1432240' id='answer-label-1432240' class=' answer'><span>Enabled<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367615[]' id='answer-id-1432241' class='answer   answerof-367615 ' value='1432241'   \/><label for='answer-id-1432241' id='answer-label-1432241' class=' answer'><span>On Idle<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-76' style=';'><div id='questionWrap-76'  class='   watupro-question-id-367616'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>76. <\/span>Refer to the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=649 height=404 id=\"\u56fe\u7247 28\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image027-10.jpg\"><br><br \/>\r<br>The exhibit shows the IPS sensor configuration. <br \/>\r<br>If traffic matches this IPS sensor, which two actions is the sensor expected to take? (Choose two.) <br \/>\r<br>A. The sensor will allow attackers matching the NTP.Spoofed.KoD.DoS signature. <br \/>\r<br>B. The sensor will block all attacks aimed at Windows servers. <br \/>\r<br>C. The sensor will reset all connections that match these signatures. <br \/>\r<br>D. The sensor will gather a packet log for all matched traffic.<\/div><input type='hidden' name='question_id[]' id='qID_76' value='367616' \/><input type='hidden' id='answerType367616' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367616[]' id='textarea_q_367616' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-77' style=';'><div id='questionWrap-77'  class='   watupro-question-id-367617'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>77. <\/span>Refer to the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=547 height=346 id=\"\u56fe\u7247 29\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image028-1.png\"><br><br \/>\r<br>An administrator has configured a performance SLA on FortiGate, which failed to generate any traffic. <br \/>\r<br>Why is FortiGate not sending probes to 4.2.2.2 and 4.2.2.1 servers? (Choose two.) <br \/>\r<br>A. The Detection Mode setting is not set to Passive. <br \/>\r<br>B. Administrator didn't configure a gateway for the SD-WAN members, or configured gateway is not valid. <br \/>\r<br>C. The configured participants are not SD-WAN members. <br \/>\r<br>D. The Enable probe packets setting is not enabled.<\/div><input type='hidden' name='question_id[]' id='qID_77' value='367617' \/><input type='hidden' id='answerType367617' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367617[]' id='textarea_q_367617' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-78' style=';'><div id='questionWrap-78'  class='   watupro-question-id-367618'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>78. <\/span>Which engine handles application control traffic on the next-generation firewall (NGFW) FortiGate?<\/div><input type='hidden' name='question_id[]' id='qID_78' value='367618' \/><input type='hidden' id='answerType367618' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367618[]' id='answer-id-1432244' class='answer   answerof-367618 ' value='1432244'   \/><label for='answer-id-1432244' id='answer-label-1432244' class=' answer'><span>Antivirus engine<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367618[]' id='answer-id-1432245' class='answer   answerof-367618 ' value='1432245'   \/><label for='answer-id-1432245' id='answer-label-1432245' class=' answer'><span>Intrusion prevention system engine<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367618[]' id='answer-id-1432246' class='answer   answerof-367618 ' value='1432246'   \/><label for='answer-id-1432246' id='answer-label-1432246' class=' answer'><span>Flow engine<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367618[]' id='answer-id-1432247' class='answer   answerof-367618 ' value='1432247'   \/><label for='answer-id-1432247' id='answer-label-1432247' class=' answer'><span>Detection engine<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-79' style=';'><div id='questionWrap-79'  class='   watupro-question-id-367619'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>79. <\/span>An administrator does not want to report the login events of service accounts to FortiGate. <br \/>\r<br>What setting on the collector agent is required to achieve this?<\/div><input type='hidden' name='question_id[]' id='qID_79' value='367619' \/><input type='hidden' id='answerType367619' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367619[]' id='answer-id-1432248' class='answer   answerof-367619 ' value='1432248'   \/><label for='answer-id-1432248' id='answer-label-1432248' class=' answer'><span>Add the support of NTLM authentication<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367619[]' id='answer-id-1432249' class='answer   answerof-367619 ' value='1432249'   \/><label for='answer-id-1432249' id='answer-label-1432249' class=' answer'><span>Add user accounts to the FortiGate group filter<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367619[]' id='answer-id-1432250' class='answer   answerof-367619 ' value='1432250'   \/><label for='answer-id-1432250' id='answer-label-1432250' class=' answer'><span>Add user accounts to Active Directory (AD)<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367619[]' id='answer-id-1432251' class='answer   answerof-367619 ' value='1432251'   \/><label for='answer-id-1432251' id='answer-label-1432251' class=' answer'><span>Add user accounts to the Ignore User List<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-80' style=';'><div id='questionWrap-80'  class='   watupro-question-id-367620'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>80. <\/span>Which statement about the policy ID number of a firewall policy is true? <br \/>\r<br>A. It is required to modify a firewall policy using the CLI. <br \/>\r<br>B. It represents the number of objects used in the firewall policy. <br \/>\r<br>C. It changes when firewall policies are reordered. <br \/>\r<br>D. It defines the order in which rules are processed.<\/div><input type='hidden' name='question_id[]' id='qID_80' value='367620' \/><input type='hidden' id='answerType367620' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367620[]' id='textarea_q_367620' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-81' style=';'><div id='questionWrap-81'  class='   watupro-question-id-367621'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>81. <\/span>How does FortiGate act when using SSL VPN in web mode?<\/div><input type='hidden' name='question_id[]' id='qID_81' value='367621' \/><input type='hidden' id='answerType367621' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367621[]' id='answer-id-1432253' class='answer   answerof-367621 ' value='1432253'   \/><label for='answer-id-1432253' id='answer-label-1432253' class=' answer'><span>FortiGate acts as an FDS server.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367621[]' id='answer-id-1432254' class='answer   answerof-367621 ' value='1432254'   \/><label for='answer-id-1432254' id='answer-label-1432254' class=' answer'><span>FortiGate acts as an HTTP reverse proxy.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367621[]' id='answer-id-1432255' class='answer   answerof-367621 ' value='1432255'   \/><label for='answer-id-1432255' id='answer-label-1432255' class=' answer'><span>FortiGate acts as DNS server.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367621[]' id='answer-id-1432256' class='answer   answerof-367621 ' value='1432256'   \/><label for='answer-id-1432256' id='answer-label-1432256' class=' answer'><span>FortiGate acts as router.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-82' style=';'><div id='questionWrap-82'  class='   watupro-question-id-367622'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>82. <\/span>Which statement is correct regarding the inspection of some of the services available by web applications embedded in third-party websites?<\/div><input type='hidden' name='question_id[]' id='qID_82' value='367622' \/><input type='hidden' id='answerType367622' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367622[]' id='answer-id-1432257' class='answer   answerof-367622 ' value='1432257'   \/><label for='answer-id-1432257' id='answer-label-1432257' class=' answer'><span>The security actions applied on the web applications will also be explicitly applied on the third-party websites.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367622[]' id='answer-id-1432258' class='answer   answerof-367622 ' value='1432258'   \/><label for='answer-id-1432258' id='answer-label-1432258' class=' answer'><span>The application signature database inspects traffic only from the original web application server.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367622[]' id='answer-id-1432259' class='answer   answerof-367622 ' value='1432259'   \/><label for='answer-id-1432259' id='answer-label-1432259' class=' answer'><span>FortiGuard maintains only one signature of each web application that is unique.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367622[]' id='answer-id-1432260' class='answer   answerof-367622 ' value='1432260'   \/><label for='answer-id-1432260' id='answer-label-1432260' class=' answer'><span>FortiGate can inspect sub-application traffic regardless where it was originated.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-83' style=';'><div id='questionWrap-83'  class='   watupro-question-id-367623'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>83. <\/span>Which two statements about SSL VPN between two FortiGate devices are true? (Choose two.) <br \/>\r<br>A. The client FortiGate requires a client certificate signed by the CA on the server FortiGate. <br \/>\r<br>B. The client FortiGate requires a manually added route to remote subnets. <br \/>\r<br>C. The client FortiGate uses the SSL VPN tunnel interface type to connect SSL VPN. <br \/>\r<br>D. Server FortiGate requires a CA certificate to verify the client FortiGate certificate.<\/div><input type='hidden' name='question_id[]' id='qID_83' value='367623' \/><input type='hidden' id='answerType367623' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367623[]' id='textarea_q_367623' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-84' style=';'><div id='questionWrap-84'  class='   watupro-question-id-367624'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>84. <\/span>A network administrator has enabled SSL certificate inspection and antivirus on FortiGate. When downloading an EICAR test file through HTTP, FortiGate detects the virus and blocks the file. When downloading the same file through HTTPS, FortiGate does not detect the virus and the file can be downloaded. <br \/>\r<br>What is the reason for the failed virus detection by FortiGate?<\/div><input type='hidden' name='question_id[]' id='qID_84' value='367624' \/><input type='hidden' id='answerType367624' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367624[]' id='answer-id-1432262' class='answer   answerof-367624 ' value='1432262'   \/><label for='answer-id-1432262' id='answer-label-1432262' class=' answer'><span>Application control is not enabled<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367624[]' id='answer-id-1432263' class='answer   answerof-367624 ' value='1432263'   \/><label for='answer-id-1432263' id='answer-label-1432263' class=' answer'><span>SSL\/SSH Inspection profile is incorrect<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367624[]' id='answer-id-1432264' class='answer   answerof-367624 ' value='1432264'   \/><label for='answer-id-1432264' id='answer-label-1432264' class=' answer'><span>Antivirus profile configuration is incorrect<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367624[]' id='answer-id-1432265' class='answer   answerof-367624 ' value='1432265'   \/><label for='answer-id-1432265' id='answer-label-1432265' class=' answer'><span>Antivirus definitions are not up to date<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-85' style=';'><div id='questionWrap-85'  class='   watupro-question-id-367625'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>85. <\/span>An administrator is configuring an Ipsec between site A and site B. The Remotes Gateway setting in both sites has been configured as Static IP Address. For site A, the local quick mode selector is 192.16.1.0\/24 and the remote quick mode selector is 192.16.2.0\/24. <br \/>\r<br>How must the administrator configure the local quick mode selector for site B? <br \/>\r<br>A. 192.16.3.0\/24 <br \/>\r<br>B. 192.16.2.0\/24 <br \/>\r<br>C. 192.16.1.0\/24 <br \/>\r<br>D. 192.16.0.0\/8<\/div><input type='hidden' name='question_id[]' id='qID_85' value='367625' \/><input type='hidden' id='answerType367625' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367625[]' id='textarea_q_367625' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-86' style=';'><div id='questionWrap-86'  class='   watupro-question-id-367626'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>86. <\/span>FortiGate is configured as a policy-based next-generation firewall (NGFW) and is applying web filtering and application control directly on the security policy. <br \/>\r<br>Which two other security profiles can you apply to the security policy? (Choose two.) <br \/>\r<br>A. Antivirus scanning <br \/>\r<br>B. File filter <br \/>\r<br>C. DNS filter <br \/>\r<br>D. Intrusion prevention<\/div><input type='hidden' name='question_id[]' id='qID_86' value='367626' \/><input type='hidden' id='answerType367626' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367626[]' id='textarea_q_367626' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-87' style=';'><div id='questionWrap-87'  class='   watupro-question-id-367627'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>87. <\/span>Which three pieces of information does FortiGate use to identify the hostname of the SSL server when SSL certificate inspection is enabled? (Choose three.) <br \/>\r<br>A. The subject field in the server certificate <br \/>\r<br>B. The serial number in the server certificate <br \/>\r<br>C. The server name indication (SNI) extension in the client hello message <br \/>\r<br>D. The subject alternative name (SAN) field in the server certificate <br \/>\r<br>E. The host field in the HTTP header<\/div><input type='hidden' name='question_id[]' id='qID_87' value='367627' \/><input type='hidden' id='answerType367627' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367627[]' id='textarea_q_367627' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-88' style=';'><div id='questionWrap-88'  class='   watupro-question-id-367628'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>88. <\/span>Refer to the exhibit. <br \/>\r<br><br><img decoding=\"async\" width=517 height=360 id=\"\u56fe\u7247 30\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image029-1.png\"><br><br \/>\r<br>An administrator is running a sniffer command as shown in the exhibit. <br \/>\r<br>Which three pieces of information are included in the sniffer output? (Choose three.)<\/div><input type='hidden' name='question_id[]' id='qID_88' value='367628' \/><input type='hidden' id='answerType367628' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367628[]' id='answer-id-1432269' class='answer   answerof-367628 ' value='1432269'   \/><label for='answer-id-1432269' id='answer-label-1432269' class=' answer'><span>Interface name<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367628[]' id='answer-id-1432270' class='answer   answerof-367628 ' value='1432270'   \/><label for='answer-id-1432270' id='answer-label-1432270' class=' answer'><span>Ethernet header<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367628[]' id='answer-id-1432271' class='answer   answerof-367628 ' value='1432271'   \/><label for='answer-id-1432271' id='answer-label-1432271' class=' answer'><span>IP header<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367628[]' id='answer-id-1432272' class='answer   answerof-367628 ' value='1432272'   \/><label for='answer-id-1432272' id='answer-label-1432272' class=' answer'><span>Application header<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367628[]' id='answer-id-1432273' class='answer   answerof-367628 ' value='1432273'   \/><label for='answer-id-1432273' id='answer-label-1432273' class=' answer'><span>Packet payload<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-89' style=';'><div id='questionWrap-89'  class='   watupro-question-id-367629'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>89. <\/span>To complete the final step of a Security Fabric configuration, an administrator must authorize all the devices on which device?<\/div><input type='hidden' name='question_id[]' id='qID_89' value='367629' \/><input type='hidden' id='answerType367629' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367629[]' id='answer-id-1432274' class='answer   answerof-367629 ' value='1432274'   \/><label for='answer-id-1432274' id='answer-label-1432274' class=' answer'><span>FortiManager<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367629[]' id='answer-id-1432275' class='answer   answerof-367629 ' value='1432275'   \/><label for='answer-id-1432275' id='answer-label-1432275' class=' answer'><span>Root FortiGate<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367629[]' id='answer-id-1432276' class='answer   answerof-367629 ' value='1432276'   \/><label for='answer-id-1432276' id='answer-label-1432276' class=' answer'><span>FortiAnalyzer<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367629[]' id='answer-id-1432277' class='answer   answerof-367629 ' value='1432277'   \/><label for='answer-id-1432277' id='answer-label-1432277' class=' answer'><span>Downstream FortiGate<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-90' style=';'><div id='questionWrap-90'  class='   watupro-question-id-367630'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>90. <\/span>NGFW mode allows policy-based configuration for most inspection rules. <br \/>\r<br>Which security profile's configuration does not change when you enable policy-based inspection?<\/div><input type='hidden' name='question_id[]' id='qID_90' value='367630' \/><input type='hidden' id='answerType367630' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367630[]' id='answer-id-1432278' class='answer   answerof-367630 ' value='1432278'   \/><label for='answer-id-1432278' id='answer-label-1432278' class=' answer'><span>Web filtering<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367630[]' id='answer-id-1432279' class='answer   answerof-367630 ' value='1432279'   \/><label for='answer-id-1432279' id='answer-label-1432279' class=' answer'><span>Antivirus<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367630[]' id='answer-id-1432280' class='answer   answerof-367630 ' value='1432280'   \/><label for='answer-id-1432280' id='answer-label-1432280' class=' answer'><span>Web proxy<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367630[]' id='answer-id-1432281' class='answer   answerof-367630 ' value='1432281'   \/><label for='answer-id-1432281' id='answer-label-1432281' class=' answer'><span>Application control<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-91' style=';'><div id='questionWrap-91'  class='   watupro-question-id-367631'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>91. <\/span>Refer to the exhibit to view the application control profile. <br \/>\r<br><br><img decoding=\"async\" width=567 height=630 id=\"\u56fe\u7247 31\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image030-1.png\"><br><br \/>\r<br><br><img decoding=\"async\" width=537 height=641 id=\"\u56fe\u7247 32\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image031.png\"><br><br \/>\r<br><br><img decoding=\"async\" width=529 height=637 id=\"\u56fe\u7247 33\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image032-1.png\"><br><br \/>\r<br><br><img decoding=\"async\" width=649 height=122 id=\"\u56fe\u7247 34\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/uploads\/2024\/11\/image033-10.jpg\"><br><br \/>\r<br>Based on the configuration, what will happen to Apple FaceTime?<\/div><input type='hidden' name='question_id[]' id='qID_91' value='367631' \/><input type='hidden' id='answerType367631' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367631[]' id='answer-id-1432282' class='answer   answerof-367631 ' value='1432282'   \/><label for='answer-id-1432282' id='answer-label-1432282' class=' answer'><span>Apple FaceTime will be allowed, based on the Apple filter configuration.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367631[]' id='answer-id-1432283' class='answer   answerof-367631 ' value='1432283'   \/><label for='answer-id-1432283' id='answer-label-1432283' class=' answer'><span>Apple FaceTime will be allowed, based on the Categories configuration.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367631[]' id='answer-id-1432284' class='answer   answerof-367631 ' value='1432284'   \/><label for='answer-id-1432284' id='answer-label-1432284' class=' answer'><span>Apple FaceTime will be blocked, based on the Excessive-Bandwidth filter configuration.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367631[]' id='answer-id-1432285' class='answer   answerof-367631 ' value='1432285'   \/><label for='answer-id-1432285' id='answer-label-1432285' class=' answer'><span>Apple FaceTime will be allowed only if the filter in Application and Filter Overrides is set to Learn.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-92' style=';'><div id='questionWrap-92'  class='   watupro-question-id-367632'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>92. <\/span>Which two statements are true about collector agent standard access mode? (Choose two.) <br \/>\r<br>A. Standard mode uses Windows convention-NetBios: DomainUsername. <br \/>\r<br>B. Standard mode security profiles apply to organizational units (OU). <br \/>\r<br>C. Standard mode security profiles apply to user groups. <br \/>\r<br>D. Standard access mode supports nested groups.<\/div><input type='hidden' name='question_id[]' id='qID_92' value='367632' \/><input type='hidden' id='answerType367632' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367632[]' id='textarea_q_367632' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-93' style=';'><div id='questionWrap-93'  class='   watupro-question-id-367633'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>93. <\/span>What is the effect of enabling auto-negotiate on the phase 2 configuration of an IPsec tunnel?<\/div><input type='hidden' name='question_id[]' id='qID_93' value='367633' \/><input type='hidden' id='answerType367633' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367633[]' id='answer-id-1432287' class='answer   answerof-367633 ' value='1432287'   \/><label for='answer-id-1432287' id='answer-label-1432287' class=' answer'><span>FortiGate automatically negotiates different local and remote addresses with the remote peer.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367633[]' id='answer-id-1432288' class='answer   answerof-367633 ' value='1432288'   \/><label for='answer-id-1432288' id='answer-label-1432288' class=' answer'><span>FortiGate automatically negotiates a new security association after the existing security association expires.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367633[]' id='answer-id-1432289' class='answer   answerof-367633 ' value='1432289'   \/><label for='answer-id-1432289' id='answer-label-1432289' class=' answer'><span>FortiGate automatically negotiates different encryption and authentication algorithms with the remote peer.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367633[]' id='answer-id-1432290' class='answer   answerof-367633 ' value='1432290'   \/><label for='answer-id-1432290' id='answer-label-1432290' class=' answer'><span>FortiGate automatically brings up the IPsec tunnel and keeps it up, regardless of activity on the IPsec tunnel.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-94' style=';'><div id='questionWrap-94'  class='   watupro-question-id-367634'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>94. <\/span>Which two types of traffic are managed only by the management VDOM? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_94' value='367634' \/><input type='hidden' id='answerType367634' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367634[]' id='answer-id-1432291' class='answer   answerof-367634 ' value='1432291'   \/><label for='answer-id-1432291' id='answer-label-1432291' class=' answer'><span>FortiGuard web filter queries<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367634[]' id='answer-id-1432292' class='answer   answerof-367634 ' value='1432292'   \/><label for='answer-id-1432292' id='answer-label-1432292' class=' answer'><span>PKI<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367634[]' id='answer-id-1432293' class='answer   answerof-367634 ' value='1432293'   \/><label for='answer-id-1432293' id='answer-label-1432293' class=' answer'><span>Traffic shaping<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367634[]' id='answer-id-1432294' class='answer   answerof-367634 ' value='1432294'   \/><label for='answer-id-1432294' id='answer-label-1432294' class=' answer'><span>DNS<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-95' style=';'><div id='questionWrap-95'  class='   watupro-question-id-367635'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>95. <\/span>Which two protocol options are available on the CLI but not on the GUI when configuring an SD-WAN Performance SLA? (Choose two.) <br \/>\r<br>A. udp-echo <br \/>\r<br>B. DNS <br \/>\r<br>C. TWAMP <br \/>\r<br>D. ping<\/div><input type='hidden' name='question_id[]' id='qID_95' value='367635' \/><input type='hidden' id='answerType367635' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367635[]' id='textarea_q_367635' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-96' style=';'><div id='questionWrap-96'  class='   watupro-question-id-367636'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>96. <\/span>Which two VDOMs are the default VDOMs created when FortiGate is set up in split VDOM mode? (Choose two.)<\/div><input type='hidden' name='question_id[]' id='qID_96' value='367636' \/><input type='hidden' id='answerType367636' value='checkbox'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367636[]' id='answer-id-1432296' class='answer   answerof-367636 ' value='1432296'   \/><label for='answer-id-1432296' id='answer-label-1432296' class=' answer'><span>FG-traffic<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367636[]' id='answer-id-1432297' class='answer   answerof-367636 ' value='1432297'   \/><label for='answer-id-1432297' id='answer-label-1432297' class=' answer'><span>Mgmt<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367636[]' id='answer-id-1432298' class='answer   answerof-367636 ' value='1432298'   \/><label for='answer-id-1432298' id='answer-label-1432298' class=' answer'><span>FG-Mgmt<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='checkbox' name='answer-367636[]' id='answer-id-1432299' class='answer   answerof-367636 ' value='1432299'   \/><label for='answer-id-1432299' id='answer-label-1432299' class=' answer'><span>Root<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-97' style=';'><div id='questionWrap-97'  class='   watupro-question-id-367637'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>97. <\/span>Which three methods are used by the collector agent for AD polling? (Choose three.) <br \/>\r<br>A. WMI <br \/>\r<br>B. Novell API <br \/>\r<br>C. WinSecLog <br \/>\r<br>D. NetAPI <br \/>\r<br>E. FortiGate polling<\/div><input type='hidden' name='question_id[]' id='qID_97' value='367637' \/><input type='hidden' id='answerType367637' value='textarea'><!-- end question-content--><\/div><div class='question-choices '><p><textarea name='answer-367637[]' id='textarea_q_367637' class='watupro-textarea-medium' rows='5' cols='80'><\/textarea>\n<\/p><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div class='watu-question ' id='question-98' style=';'><div id='questionWrap-98'  class='   watupro-question-id-367638'>\n\t\t\t<div class='question-content'><div><span class='watupro_num'>98. <\/span>If the Services field is configured in a Virtual IP (VIP), which of the following statements is true when central NAT is used?<\/div><input type='hidden' name='question_id[]' id='qID_98' value='367638' \/><input type='hidden' id='answerType367638' value='radio'><!-- end question-content--><\/div><div class='question-choices watupro-choices-columns '><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367638[]' id='answer-id-1432301' class='answer   answerof-367638 ' value='1432301'   \/><label for='answer-id-1432301' id='answer-label-1432301' class=' answer'><span>The Services field removes the requirement of creating multiple VIPs for different services.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367638[]' id='answer-id-1432302' class='answer   answerof-367638 ' value='1432302'   \/><label for='answer-id-1432302' id='answer-label-1432302' class=' answer'><span>The Services field is used when several VIPs need to be bundled into VIP groups.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367638[]' id='answer-id-1432303' class='answer   answerof-367638 ' value='1432303'   \/><label for='answer-id-1432303' id='answer-label-1432303' class=' answer'><span>The Services field does not allow source NAT and destination NAT to be combined in the same policy.<\/span><\/label><\/div><div class='watupro-question-choice  ' dir='auto' ><input type='radio' name='answer-367638[]' id='answer-id-1432304' class='answer   answerof-367638 ' value='1432304'   \/><label for='answer-id-1432304' id='answer-label-1432304' class=' answer'><span>The Services field does not allow multiple sources of traffic, to use multiple services, to connect to a \r\nsingle computer.<\/span><\/label><\/div><!-- end question-choices--><\/div><!-- end questionWrap--><\/div><\/div><div style='display:none' id='question-99'>\n\t<div class='question-content'>\n\t\t<img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/plugins\/watupro\/img\/loading.gif\" width=\"16\" height=\"16\" alt=\"Loading...\" title=\"Loading...\" \/>&nbsp;Loading...\t<\/div>\n<\/div>\n\n<br \/>\n\t\n\t\t\t<div class=\"watupro_buttons flex \" id=\"watuPROButtons9259\" >\n\t\t  <div id=\"prev-question\" style=\"display:none;\"><input type=\"button\" value=\"&lt; Previous\" onclick=\"WatuPRO.nextQuestion(event, 'previous');\"\/><\/div>\t\t  \t\t  \t\t   \n\t\t   \t  \t\t<div><input type=\"button\" name=\"action\" class=\"watupro-submit-button\" onclick=\"WatuPRO.submitResult(event)\" id=\"action-button\" value=\"View Results\"  \/>\n\t\t<\/div>\n\t\t<\/div>\n\t\t\n\t<input type=\"hidden\" name=\"quiz_id\" value=\"9259\" id=\"watuPROExamID\"\/>\n\t<input type=\"hidden\" name=\"start_time\" id=\"startTime\" value=\"2026-04-30 17:07:39\" \/>\n\t<input type=\"hidden\" name=\"start_timestamp\" id=\"startTimeStamp\" value=\"1777568859\" \/>\n\t<input type=\"hidden\" name=\"question_ids\" value=\"\" \/>\n\t<input type=\"hidden\" name=\"watupro_questions\" value=\"367541:1432010 | 367542:1432011 | 367543:1432012,1432013,1432014,1432015 | 367544:1432016,1432017,1432018,1432019 | 367545:1432020,1432021,1432022,1432023 | 367546:1432024,1432025,1432026,1432027 | 367547:1432028,1432029,1432030,1432031 | 367548:1432032,1432033,1432034,1432035 | 367549:1432036 | 367550:1432037,1432038,1432039,1432040 | 367551:1432041,1432042,1432043,1432044 | 367552:1432045,1432046,1432047,1432048 | 367553:1432049,1432050,1432051,1432052 | 367554:1432053,1432054,1432055,1432056 | 367555:1432057,1432058,1432059,1432060 | 367556:1432061,1432062,1432063,1432064 | 367557:1432065,1432066,1432067,1432068 | 367558:1432069 | 367559:1432070,1432071,1432072,1432073 | 367560:1432074,1432075,1432076,1432077 | 367561:1432078,1432079,1432080,1432081 | 367562:1432082,1432083,1432084,1432085 | 367563:1432086 | 367564:1432087,1432088,1432089,1432090 | 367565:1432091 | 367566:1432092 | 367567:1432093,1432094,1432095,1432096 | 367568:1432097 | 367569:1432098 | 367570:1432099 | 367571:1432100,1432101,1432102,1432103 | 367572:1432104,1432105,1432106,1432107 | 367573:1432108,1432109,1432110,1432111 | 367574:1432112 | 367575:1432113 | 367576:1432114,1432115,1432116,1432117 | 367577:1432118,1432119,1432120,1432121 | 367578:1432122,1432123,1432124,1432125 | 367579:1432126,1432127,1432128,1432129 | 367580:1432130 | 367581:1432131,1432132,1432133,1432134 | 367582:1432135,1432136,1432137,1432138 | 367583:1432139,1432140,1432141,1432142 | 367584:1432143,1432144,1432145,1432146 | 367585:1432147 | 367586:1432148,1432149,1432150,1432151 | 367587:1432152 | 367588:1432153,1432154,1432155,1432156 | 367589:1432157 | 367590:1432158,1432159,1432160,1432161 | 367591:1432162,1432163,1432164,1432165 | 367592:1432166 | 367593:1432167,1432168,1432169,1432170 | 367594:1432171 | 367595:1432172,1432173,1432174,1432175 | 367596:1432176 | 367597:1432177,1432178,1432179,1432180 | 367598:1432181,1432182,1432183,1432184 | 367599:1432185,1432186,1432187,1432188 | 367600:1432189 | 367601:1432190,1432191,1432192,1432193 | 367602:1432194,1432195,1432196,1432197,1432198 | 367603:1432199,1432200,1432201,1432202 | 367604:1432203,1432204,1432205,1432206 | 367605:1432207,1432208,1432209,1432210 | 367606:1432211,1432212,1432213,1432214 | 367607:1432215,1432216,1432217,1432218 | 367608:1432219,1432220,1432221,1432222 | 367609:1432223 | 367610:1432224,1432225,1432226,1432227 | 367611:1432228,1432229,1432230,1432231 | 367612:1432232,1432233,1432234,1432235 | 367613:1432236 | 367614:1432237 | 367615:1432238,1432239,1432240,1432241 | 367616:1432242 | 367617:1432243 | 367618:1432244,1432245,1432246,1432247 | 367619:1432248,1432249,1432250,1432251 | 367620:1432252 | 367621:1432253,1432254,1432255,1432256 | 367622:1432257,1432258,1432259,1432260 | 367623:1432261 | 367624:1432262,1432263,1432264,1432265 | 367625:1432266 | 367626:1432267 | 367627:1432268 | 367628:1432269,1432270,1432271,1432272,1432273 | 367629:1432274,1432275,1432276,1432277 | 367630:1432278,1432279,1432280,1432281 | 367631:1432282,1432283,1432284,1432285 | 367632:1432286 | 367633:1432287,1432288,1432289,1432290 | 367634:1432291,1432292,1432293,1432294 | 367635:1432295 | 367636:1432296,1432297,1432298,1432299 | 367637:1432300 | 367638:1432301,1432302,1432303,1432304\" \/>\n\t<input type=\"hidden\" name=\"no_ajax\" value=\"0\">\t\t\t<\/form>\n\t<p>&nbsp;<\/p>\n<\/div>\n\n<script type=\"text\/javascript\">\n\/\/jQuery(document).ready(function(){\ndocument.addEventListener(\"DOMContentLoaded\", function(event) { \t\nvar question_ids = \"367541,367542,367543,367544,367545,367546,367547,367548,367549,367550,367551,367552,367553,367554,367555,367556,367557,367558,367559,367560,367561,367562,367563,367564,367565,367566,367567,367568,367569,367570,367571,367572,367573,367574,367575,367576,367577,367578,367579,367580,367581,367582,367583,367584,367585,367586,367587,367588,367589,367590,367591,367592,367593,367594,367595,367596,367597,367598,367599,367600,367601,367602,367603,367604,367605,367606,367607,367608,367609,367610,367611,367612,367613,367614,367615,367616,367617,367618,367619,367620,367621,367622,367623,367624,367625,367626,367627,367628,367629,367630,367631,367632,367633,367634,367635,367636,367637,367638\";\nWatuPROSettings[9259] = {};\nWatuPRO.qArr = question_ids.split(',');\nWatuPRO.exam_id = 9259;\t    \nWatuPRO.post_id = 93619;\nWatuPRO.store_progress = 0;\nWatuPRO.curCatPage = 1;\nWatuPRO.requiredIDs=\"0\".split(\",\");\nWatuPRO.hAppID = \"0.84385400 1777568859\";\nvar url = \"https:\/\/www.dumpsbase.com\/freedumps\/wp-content\/plugins\/watupro\/show_exam.php\";\nWatuPRO.examMode = 1;\nWatuPRO.siteURL=\"https:\/\/www.dumpsbase.com\/freedumps\/wp-admin\/admin-ajax.php\";\nWatuPRO.emailIsNotRequired = 0;\nWatuPROIntel.init(9259);\nWatuPRO.inCategoryPages=1;});    \t \n<\/script>\n","protected":false},"excerpt":{"rendered":"<p>Are you preparing for the Fortinet FCP &#8211; FortiGate 7.4 Administrator (FCP_FGT_AD-7.4) exam? This certification is part of these specialized tracks: Fortinet Certified Professional (FCP) &#8211; Network Security Fortinet Certified Professional (FCP) &#8211; Public Cloud Security Fortinet Certified Professional (FCP) &#8211; Security Operations DumpsBase&#8217;s Fortinet FCP_FGT_AD-7.4 exam dumps (V9.02) provide comprehensive coverage of the FCP [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[16627,16568,17594,189,16447],"tags":[18003,18002],"class_list":["post-93619","post","type-post","status-publish","format-standard","hentry","category-fcp-in-network-security","category-fcp-in-public-cloud-security","category-fcp-in-security-operations","category-fortinet","category-fortinet-certified-professional-fcp","tag-fcp-fortigate-7-4-administrator","tag-fcp_fgt_ad-7-4-exam-dumps"],"_links":{"self":[{"href":"https:\/\/www.dumpsbase.com\/freedumps\/wp-json\/wp\/v2\/posts\/93619","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.dumpsbase.com\/freedumps\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.dumpsbase.com\/freedumps\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.dumpsbase.com\/freedumps\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.dumpsbase.com\/freedumps\/wp-json\/wp\/v2\/comments?post=93619"}],"version-history":[{"count":1,"href":"https:\/\/www.dumpsbase.com\/freedumps\/wp-json\/wp\/v2\/posts\/93619\/revisions"}],"predecessor-version":[{"id":93620,"href":"https:\/\/www.dumpsbase.com\/freedumps\/wp-json\/wp\/v2\/posts\/93619\/revisions\/93620"}],"wp:attachment":[{"href":"https:\/\/www.dumpsbase.com\/freedumps\/wp-json\/wp\/v2\/media?parent=93619"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.dumpsbase.com\/freedumps\/wp-json\/wp\/v2\/categories?post=93619"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.dumpsbase.com\/freedumps\/wp-json\/wp\/v2\/tags?post=93619"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}