NSE6 Exam Questions
203 real NSE6 exam questions with expert-verified answers and explanations. Page 3 of 5.
- Question #102
Which network protocols are supported for administrative access to a FortiGate unit? (Choose three.)
- Question #103
In which process states is it impossible to interrupt/kill a process? (Choose two.)
- Question #104
What is the FortiGate password recovery process?
- Question #106
Which of the following statements are correct about the HA command diagnose sys ha reset- uptime? (Choose two.)
- Question #107
Which statements are correct properties of a partial mesh VPN deployment. (Choose two.)
- Question #108
Review the IPS sensor filter configuration shown in the exhibit. Based on the information in the exhibit, which statements are correct regarding the filter? (Choose two.)
- Question #109
Two devices are in an HA cluster, the device hostnames are STUDENT and REMOTE. Exhibit A shows the command output of diagnose sys session stat for the STUDENT device. Exhibit B sho...
- Question #110
Which UTM feature sends a UDP query to FortiGuard servers each time FortiGate scans a packet (unless the response is locally cached)?
- Question #111
A new version of FortiOS firmware has just been released. When you upload new firmware, which is true?
- Question #112
Which protocols can you use for secure administrative access to a FortiGate? (Choose two)
- Question #113
Which statements are correct regarding an IPv6 over IPv4 IPsec configuration? (Choose two.)
- Question #114
Which is not a FortiGate feature?
- Question #115
Which profile could IPS engine use on an interface that is in sniffer mode? (Choose three)
- Question #116
Which operating system vulnerability can you protect when selecting signatures to include in an IPS sensor? (choose three)
- Question #117
You are creating a custom signature. Which has incorrect syntax?
- Question #118
Which best describe the mechanism of a TCP SYN flood?
- Question #119
Which statement is correct concerning creating a custom signature?
- Question #120
Your Linux email server runs on a non-standard port number, port 2525. Which statement is true?
- Question #121
What are the advantages of FSSO DC mode over polling mode?
- Question #122
Which of the following statements are correct about NTLM authentication? (Choose three)
- Question #123
Which is true about incoming and outgoing interfaces in firewall policies?
- Question #124
For FortiGate devices equipped with Network Processor (NP) chips, which are true? (Choose three.)
- Question #125
Which traffic can match a firewall policy's "Services" setting? (Choose three.)
- Question #126
Which is NOT true about source matching with firewall policies?
- Question #127
If you enable the option "Generate Logs when Session Starts", what effect does this have on the number of traffic log messages generated for each session?
- Question #128
Which best describes the authentication timeout?
- Question #129
Which authentication scheme is not supported by the RADIUS implementation on FortiGate?
- Question #130
Which are valid replies from a RADIUS server to an ACCESS-REQUEST packet from a FortiGate? (Choose two.)
- Question #131
Which authentication methods does FortiGate support for firewall authentication? (Choose two.)
- Question #132
Which methods can FortiGate use to send a One Time Password (OTP) to Two-Factor Authentication users? (Choose three.)
- Question #133
Acme Web Hosting is replacing one of their firewalls with a FortiGate. It must be able to apply port forwarding to their back-end web servers while blocking virus uploads and TCP S...
- Question #134
You have configured the DHCP server on a FortiGate's port1 interface (or internal, depending on the model) to offer IPs in a range of 192.168.1.65-192.168.1.253. When the first hos...
- Question #135
You have created a new administrator account, and assign it the prof_admin profile. Which is false about that account's permissions?
- Question #136
If you have lost your password for the "admin" account on your FortiGate, how should you reset it?
- Question #137
What are the ways FortiGate can monitor logs? (Choose three.)
- Question #138
To which remote device can the FortiGate send logs? (Choose three.)
- Question #139
In a Crash log, what does a status of 0 indicate?
- Question #140
There are eight (8) log severity levels that indicate the importance of an event. Not including Debug, which is only needed to log diagnostic data, what are both the lowest AND hig...
- Question #141
Which of the following are benefits of using web caching? (Choose three.)
- Question #142
Review the exhibit of an explicit proxy policy configuration. If there is a proxy connection attempt coming from the IP address 10.0.1.5, and from a user that has not authenticated...
- Question #143
When does a FortiGate load-share traffic between two static routes to the same destination subnet?
- Question #144
How is the FortiGate password recovery process?
- Question #145
When creating FortiGate administrative users, which configuration objects specify the account rights?
- Question #146
Which devices can receive logs from FortiSandbox? (Choose two.)
- Question #147
FortiGate is configured to send suspicious files to a FortiSandbox for in-line inspection. The administrator creates a new VDOM, and then generates some traffic so what the new VDO...
- Question #148
Which two types of digital certificates can you create in FortiAuthenticator? (Choose two.)
- Question #149
Which is true regarding Microsoft Office on FortiSandbox?
- Question #150
Which is not a supported captive portal authentication method?
- Question #151
An administrator is running the following sniffer in a FortiADC: What information is included in the output of the sniffer? (Choose two.)
- Question #152
Which protocols can a FortiSandbox inspect when is deployed in sniffer mode? (Choose two.)