Fortinet NSE4_FGT-6.2 - Fortinet NSE4 - FortiOS 6.2 Exam
Page: 1 / 24
Total 119 questions
Question #1 (Topic: Topic 1)
Examine the FortiGate configuration:
[Fortinet-NSE4-FGT-6.2-1.0/xmlfile-2_1.png]
What will happen to unauthenticated users when an active authentication policy is followed by a fall through policy without authentication?
[Fortinet-NSE4-FGT-6.2-1.0/xmlfile-2_1.png]
What will happen to unauthenticated users when an active authentication policy is followed by a fall through policy without authentication?
A. The user must log in again to authenticate.
B. The user will be denied access to resources without authentication.
C. The user will not be prompted for authentication.
D. User authentication happens at an interface level.
Answer: A
Question #2 (Topic: Topic 1)
Which downstream FortiGate VDOM is used to join the Security Fabric when split-task VDOM is enabled on all FortiGate devices?
A. FG-traffic VDOM
B. Root VDOM
C. Customer VDOM
D. Global VDOM
Answer: B
Question #3 (Topic: Topic 1)
In an HA cluster operating in active-active mode, which path is taken by the SYN packet of an HTTP session that is offloaded to a secondary FortiGate?
A. Client > secondary FortiGate > primary FortiGate > web server
B. Client > primary FortiGate > secondary FortiGate > primary FortiGate > web server
C. Client > primary FortiGate > secondary FortiGate > web server
D. Client > secondary FortiGate > web server
Answer: C
Question #4 (Topic: Topic 1)
Which two statements about antivirus scanning mode are true? (Choose two.)
A. In proxy-based inspection mode, antivirus buffers the whole file for scanning, before sending it to the client.
B. In full scan flow-based inspection mode, FortiGate buffers the file, but also simultaneously transmits it to the client.
C. In proxy-based inspection mode, files bigger than the buffer size are scanned.
D. In quick scan mode, you can configure antivirus profiles to use any of the available antivirus signature databases.
Answer: AB
Question #5 (Topic: Topic 1)
The FSSO collector agent set to advanced access mode for the Windows Active Directory uses which convention?
A. LDAP
B. Windows
C. RSSO
D. NTLM
Answer: A