NSE4_FGT_AD-7.6 Exam Questions
115 real NSE4_FGT_AD-7.6 exam questions with expert-verified answers and explanations. Page 3 of 3.
- Question #101Security Profiles
Why would the firewall policy not block a well-known virus, for example eicar?
antivirusdeep content inspectionsecurity profilesflow-based - Question #102High Availability
FGT-1 and FGT-2 are updated with HA configuration commands shown in the exhibit. What would be the expected outcome in the HA cluster?
HA overrideprimary electioncluster syncHA priority - Question #103System Configuration
Which method allows management access to the FortiGate CLI without network connectivity?
serial consoleCLI accessout-of-band managementconsole port - Question #104Firewall Policies
Refer to the exhibit. FortiGate is configured for firewall authentication. When attempting to access an external website, the user is not presented with a login prompt. What is the...
firewall authenticationcaptive portalDNS servicepolicy configuration - Question #105Security Profiles
Refer to the exhibit, which shows the IPS sensor configuration. If traffic matches this IPS sensor, which two actions are the sensor expected to take? (Choose two.)
IPS sensorsignature actionspacket loggingDoS protection - Question #106Security Profiles
Which inspection mode does FortiGate use for application profiles if it is configured as a profile-based next-generation firewall (NGFW)?
NGFW modeprofile-basedflow-based inspectionapplication control - Question #107VPN
Which two features of IPsec IKEv1 authentication are supported by FortiGate? (Choose two.)
IKEv1XAuthpre-shared keycertificate authentication - Question #108Security Profiles
An administrator manages a FortiGate model that supports NTurbo. How does NTurbo enhance performance for flow-based inspection?
NTurboflow-based inspectionperformancedata path - Question #109Security Profiles
The HTTP inspection process in web filtering follows a specific order when multiple features are enabled in the web filter profile. Which order must FortiGate use when the web filt...
web filteringHTTP inspection orderFortiGuard categorystatic URL filter - Question #110System Configuration
An administrator creates a new address object in the root FortiGate (Local-FortiGate) in the security fabric. After synchronization, this object is not available on the downstream...
Security Fabricobject synchronizationfabric-object-unificationdownstream FortiGate - Question #111Firewall Policies
Which two configuration changes can the administrator make to the policy to deny Webserver access for Remote-User2? (Choose two.)
VIPmatch-vipdeny policyNAT policy - Question #112System Configuration
You are configuring FortiAnalyzer on FortiGate. Which much step must you take to connect FortiAnalyzer to FortiGate?
FortiAnalyzerloggingdevice authorizationlog management - Question #113Network Configuration
You are onboarding an agentless, secure web gateway (SWG) endpoint for secure internet access (SIA). What will happen to the user's nonweb traffic?
FortiSASESWGagentless endpointnon-web traffic - Question #114Network Configuration
Refer to the exhibit. You deployed a FortiGate Cloud-Native Firewall (CNF) in AWS for FortiGate CNF policy enforcement for EC2 instance traffic. Which path does the EC2 traffic tak...
FortiGate CNFAWSGWLBcloud-native firewall - Question #115Troubleshooting and Monitoring
Refer to the exhibit. How can the administrator view the log messages shown in the exhibit? (Choose two.)
log filteringpolicy UUIDimplicit denysecurity event logs