FCNSA.V4 Exam Questions
116 real FCNSA.V4 exam questions with expert-verified answers and explanations. Page 1 of 3.
- Question #1
An administrator wants to assign a set of UTM features to a group of users. Which of the following is the correct method for doing this?
- Question #2
When firewall policy authentication is enabled, only traffic on supported protocols will trigger an authentication challenge. Select all supported protocols from the following:
- Question #4
A client can establish a secure connection to a corporate network using SSL VPN in tunnel mode. Which of the following statements are correct regarding the use of tunnel mode SSL V...
- Question #5
In an IPSec gateway-to-gateway configuration, two FortiGate units create a VPN tunnel between two separate private networks. Which of the following configuration steps must be perf...
- Question #6
How is traffic routed onto an SSL VPN tunnel from the FortiGate unit side?
- Question #7
An end user logs into the full-access SSL VPN portal and selects the Tunnel Mode option by clicking on the "Connect" button. The administrator has enabled split tunneling. Given th...
- Question #8
Which of the following antivirus and attack definition update options are supported by FortiGate units? (Select all that apply.)
- Question #9
A FortiGate AntiVirus profile can be configured to scan for viruses on SMTP, FTP, POP3, and SMB protocols using which inspection mode?
- Question #10
Which of the following statements regarding Banned Words are correct? (Select all that apply.)
- Question #11
Which statement is correct regarding virus scanning on a FortiGate unit?
- Question #12
Which of the following statements are correct regarding URL filtering on the FortiGate unit? (Select all that apply.)
- Question #13
Which of the following regular expression patterns will make the terms "confidential data" case insensitive?
- Question #14
Which of the following spam filtering methods are supported on the FortiGate unit? (Select all that apply.)
- Question #15
Which of the following email spam filtering features is NOT supported on a FortiGate unit?
- Question #16
Examine the exhibit shown below; then answer the question following it. Which of the following statements best describes the green status indicators that appear next to the differe...
- Question #17
A FortiGate unit is configured to receive push updates from the FortiGuard Distribution Network, however, updates are not being received. Which of the following statements are poss...
- Question #18
A firewall policy has been configured for the internal email server to receive email from external parties through SMTP. Exhibits A and B show the antivirus and email filter profil...
- Question #19
Caching improves performance by reducing FortiGate unit requests to the FortiGuard server. Which of the following statements are correct regarding the caching of FortiGuard respons...
- Question #20
For Data Leak Prevention, which of the following describes the difference between the block and quarantine actions?
- Question #21
How can DLP file filters be configured to detect Office 2010 files? (Select all that apply.)
- Question #22
What are the valid sub-types for a Firewall type policy? (Select all that apply)
- Question #24
In which order are firewall policies processed on the FortiGate unit?
- Question #25
Which of the following pieces of information can be included in the Destination Address field of a firewall policy? (Select all that apply.)
- Question #26
The ordering of firewall policies is very important. Policies can be re-ordered within the FortiGate unit's GUI and also using the CLI. The command used in the CLI to perform this...
- Question #27
You wish to create a firewall policy that applies only to traffic intended for your web server. The web server has an IP address of 192.168.2.2 and a /24 subnet mask. When defining...
- Question #28
What is the effect of using CLI "config system session-ttl" to set session_ttl to 1800 seconds?
- Question #29
Which of the following network protocols are supported for administrative access to a FortiGate unit?
- Question #30
Which of the following statements is correct regarding a FortiGate unit operating in NAT/Route mode?
- Question #31
A FortiGate unit can provide which of the following capabilities? (Select all that apply.)
- Question #32
Which of the following methods can be used to access the CLI? (Select all that apply.)
- Question #34
When backing up the configuration file on a FortiGate unit, the contents can be encrypted by enabling the encrypt option and supplying a password. If the password is forgotten, the...
- Question #35
When creating administrative users which of the following configuration objects determines access rights on the FortiGate unit.
- Question #36
What is the FortiGate unit password recovery process?
- Question #37
Which of the following statements are true of the FortiGate unit's factory default configuration?
- Question #38
Under the System Information widget on the dashboard, which of the following actions are available for the system configuration? (Select all that apply.)
- Question #39
Encrypted backup files provide which of the following benefits? (Select all that apply.)
- Question #40
The FortiGate unit's GUI provides a link to update the firmware. Clicking this link will perform which of the following actions?
- Question #41
Which of the following products is designed to manage multiple FortiGate devices?
- Question #42
Which of the following products provides dedicated hardware to analyze log data from multiple FortiGate devices?
- Question #43
Which of the following are valid FortiGate device interface methods for handling DNS requests? (Select all that apply.)
- Question #44
The default administrator profile that is assigned to the default "admin" user on a FortGate device is:____________________.
- Question #45
Which of the following logging options are supported on a FortiGate unit? (Select all that apply.)
- Question #46
In order to match an identity-based policy, the FortiGate unit checks the IP information. Once inside the policy, the following logic is followed:
- Question #47
Which of the following statements regarding the firewall policy authentication timeout is true?
- Question #48
Two-factor authentication is supported using the following methods? (Select all that apply.)
- Question #49
Which of the following statements are true regarding Local User Authentication? (Select all that apply.)
- Question #50
Which of the statements below are true regarding firewall policy disclaimers? (Select all that apply.)
- Question #51
Examine the firewall configuration shown below; then answer the question following it. Which of the following statements are correct based on the firewall configuration illustrated...
- Question #52
When browsing to an internal web server using a web-mode SSL VPN bookmark, from which of the following source IP addresses would the web server consider the HTTP request to be init...
- Question #53
An issue could potentially occur when clicking Connect to start tunnel mode SSL VPN. The tunnel will start up for a few seconds, then shut down. Which of the following statements b...