Fortinet Nse 4 - Fortios 6.4
Fortinet Nse 4 - Fortios 6.4
Fortinet Nse 4 - Fortios 6.4
4
Fortinet NSE4_FGT-6.4
Version Demo
https://dumpsarena.com
sales@dumpsarena.com
QUESTION NO: 1
What CLI command must the administrator use to view the route?
ANSWER: D
Explanation:
Reference: https://www.fortinetguru.com/2019/09/troubleshooting-sd-wan-fortios-6-2/
QUESTION NO: 2
Which engine handles application control traffic on the next-generation firewall (NGFW) FortiGate?
A. Antivirus engine
C. Flow engine
ANSWER: B
QUESTION NO: 3
An explicit web proxy is configured for subnet range 10.0.1.0/24 with three explicit web proxy policies.
The authentication rule is configured to authenticate HTTP requests for subnet range 10.0.1.0/24 with a form-based
authentication scheme for the FortiGate local user database. Users will be prompted for authentication.
How will FortiGate process the traffic when the HTTP request comes from a machine with the source IP 10.0.1.10 to the
destination http://www.fortinet.com? (Choose two.)
B. If a Google Chrome browser is used with User-B credentials, the HTTP request will be allowed.
C. If a Mozilla Firefox browser is used with User-A credentials, the HTTP request will be allowed.
D. If a Microsoft Internet Explorer browser is used with User-B credentials, the HTTP request will be allowed.
E. If a Mozilla Firefox browser is used with User-C credentials, the HTTP request will be denied.
ANSWER: B C
QUESTION NO: 4
An administrator wants to configure timeouts for users. Regardless of the user’s behavior, the timer should start as soon as
the user authenticates and expire after the configured value.
A. auth-on-demand
B. soft-timeout
C. idle-timeout
D. new-session
E. hard-timeout
ANSWER: E
QUESTION NO: 5
Which type of logs on FortiGate record information about traffic directly to and from the FortiGate management IP
addresses?
D. Security logs
ANSWER: A
Which CLI command allows administrators to troubleshoot Layer 2 issues, such as an IP address conflict?
ANSWER: D
QUESTION NO: 7
Which two statements about the debug flow output are correct? (Choose two.)
ANSWER: A C
QUESTION NO: 8
Which three options are the remote log storage options you can configure on FortiGate? (Choose three.)
A. FortiSIEM
B. FortiCloud
C. FortiCache
E. FortiAnalyzer
ANSWER: A D E
QUESTION NO: 9
Which three CLI commands can you use to troubleshoot Layer 3 issues if the issue is in neither the physical layer nor the
link layer? (Choose three.)
B. execute ping
C. execute traceroute
ANSWER: A B C
QUESTION NO: 10
An administrator has a requirement to keep an application session from timing out on port 80.
What two changes can the administrator make to resolve the issue without affecting any existing services running through
FortiGate? (Choose two.)
A. Create a new firewall policy with the new HTTP service and place it above the existing HTTP policy.
C. Create a new service object for HTTP service and set the session TTL to never.
ANSWER: C D