Which user group types does FortiGate support for firewall authentication? (Choose three.)
Answer : A,B,E
Which of the following settings can be configured per VDOM? (Choose three)
Answer : A,B,E
Which best describes the mechanism of a TCP SYN flood?
Answer : D
What attributes are always included in a log header? (Choose three.)
Answer : B,D,E
When does a FortiGate load-share traffic between two static routes to the same destination subnet?
Answer : D
Which statement is in advantage of using a hub and spoke IPsec VPN configuration instead of a fully-meshed set of IPsec tunnels?
Answer : B
An administrator has configured a route-based site-to-site IPsec VPN. Which statement is correct regarding this IPsec VPN configuration?
Answer : D
Which of the following email spam filtering features is NOT supported on a FortiGate unit?
Answer : C
Which IPSec mode includes the peer id information in the first packet?
Answer : C
What actions are possible with Application Control? (Choose three.)
Answer : B,C,D
Which is not a FortiGate feature?
Answer : A
In FortiOS session table output, what is the correct proto_state number for an established, non-proxied TCP connection?
Answer : C
A FortiGate devices is configured with four VDOMs: 'root' and 'vdom1' are in NAT/route mode; 'vdom2' and 'vdom2' are in transparent mode. The management VDOM is 'root'.
Which of the following statements are true? (Choose two.)
Answer : A,B
Examine the following log message attributes and select two correct statements from the list below. (Choose two.) hostname=www.youtube.com profiletype="Webfilter_Profile" profile="default" status="passthrough" msg="URL belongs to a category with warnings enabled"
Answer : C,D
Which of the following statements are true about PKI users created in a FortiGate device?
(Choose two.)
Answer : A,B