Fortinet NSE4_5.4 - Fortinet Network Security Expert - FortiOS 5.4 Exam

Question #11 (Topic: Topic 1)
View the example routing table.
[Fortinet-NSE4-5.4-1.0/xmlfile-7_1.png]
Which route will be selected when trying to reach 10.20.30.254?
A. 10.20.30.0/26 [10/0] via 172.20.168.254, port2 B. The traffic will be dropped because it cannot be routed. C. 10.20.30.0/24 [10/0] via 172.20.167.254, port3 D. 0.0.0.0/0 [10/0] via 172.20.121.2, port1
Answer: C
Question #12 (Topic: Topic 1)
When browsing to an internal web server using a web-mode SSL VPN bookmark, which IP address is used as the source of the HTTP request?
A. The FortiGate unitג€™s public IP address B. The FortiGate unitג€™s internal IP address C. The remote userג€™s virtual IP address D. The remote userג€™s public IP address
Answer: B
Question #13 (Topic: Topic 1)
What is FortiGateג€™s behavior when local disk logging is disabled?
A. Only real-time logs appear on the FortiGate dashboard. B. No logs are generated. C. Alert emails are disabled. D. Remote logging is automatically enabled.
Answer: A
Question #14 (Topic: Topic 1)
What traffic and attacks can be blocked by a web application firewall (WAF) profile? (Choose three.)
A. Traffic to inappropriate web sites B. SQL injection attacks C. Server information disclosure attacks D. Credit card data leaks E. Traffic to botnet command and control (C&C) servers
Answer: BCE
Question #15 (Topic: Topic 1)
Which statements about One-to-One IP pool are true? (Choose two.)
A. It allows configuration of ARP replies. B. It allows fixed mapping of an internal address range to an external address range. C. It is used for destination NAT. D. It does not use port address translation.
Answer: BD
Download Exam
Page: 3 / 115
Total 575 questions