NSE8_812 Exam Questions
208 real NSE8_812 exam questions with expert-verified answers and explanations. Page 1 of 5.
- Question #1
Refer to the exhibit. You are deploying a FortiGate 6000F. The device should be directly connected to a switch. In the future, a new hardware module providing higher speed will be...
- Question #2
Refer to the exhibit, which shows a Branch1 configuration and routing table. In the SD-WAN implicit rule, you do not want the traffic load balance for the overlay interface when al...
- Question #3
You are responsible for recommending an adapter type for NICs on a FortiGate VM that will run on an ESXi Hypervisor. Your recommendation must consider performance as the main conce...
- Question #4
You are deploying a FortiExtender (FEX) on a FortiGate-60F. The FEX will be managed by the FortiGate. You anticipate high utilization. The requirement is to minimize the overhead o...
- Question #5
A customer wants to deploy 12 FortiAP 431E devices on high density conference center, but they do not currently have any PoE switches to connect them to. They want to be able to ru...
- Question #6
You want to use the MTA adapter feature on FortiSandbox in an HA-Cluster. Which statement about this solution is true?
- Question #7
Refer to the exhibit showing the history logs from a FortiMail device. Which FortiMail email security feature can an administrator enable to treat these emails as spam?
- Question #8
Refer to the exhibits, which show a firewall policy configuration and a network topology. An administrator has configured an inbound SSL inspection profile on a FortiGate device (F...
- Question #9
A remote worker requests access to an SSH server inside the network. You deployed a ZTNA Rule to their FortiClient. You need to follow the security requirements to inspect this tra...
- Question #10
On a FortiGate configured in Transparent mode, which configuration option allows you to control Multicast traffic passing through the device?
- Question #11
Refer to the CLI configuration of an SSL inspection profile from a FortiGate device configured to protect a web server: Based on the information shown, what is the expected behavio...
- Question #12
According to the exhibit, if an internal user pings 10.1.100.2 and 10.1.100.22 from subnet 172.16.205.0/24, which outgoing interfaces will be used?
- Question #13
Customer requirements: SSLVPN Portal must be accessible on standard HTTPS port (TCP/443) Public IP address (129.11.1.100) is assigned to port1 Datacenter.acmecorp.com resolves to t...
- Question #14
Refer to the exhibit. The exhibit shows the forensics analysis of an event detected by the FortiEDR core. In this scenario, which statement is correct regarding the threat?
- Question #15
An automation stitch was configured using an incoming webhook as the trigger named 'my_incoming_webhook'. The action is configured to execute the CLI script shown: config firewall...
- Question #16
A customer wants to use the FortiAuthenticator REST API to retrieve an SSO group called SalesGroup. The following API call is being made with the 'curl' utility: curl -k -v -u "adm...
- Question #17
Refer to the exhibit. A customer has deployed a FortiGate 200F high-availability (HA) cluster that contains a TPM chip. The exhibit shows output from the FortiGate CLI session wher...
- Question #18
Refer to the exhibit showing a FortiSOAR playbook. The exhibits show a FortiMail network topology, Inbound configuration settings, and a Dictionary Profile. You are required to int...
- Question #19
You are investigating a suspicious e-mail alert on FortiSOAR, and after reviewing the executed playbook, you can see that it requires intervention. What should be your next step?
- Question #20
Review the following FortiGate-6000 configuration excerpt: `config load-balance setting set nat-source-port chassis-slots end` Based on the configuration, which statement is correc...
- Question #21
Refer to the exhibit. You have been tasked with replacing the managed switch FortiSwitch 2 shown in the topology. Which two actions are correct regarding the replacement process? (...
- Question #22
A customer with a FortiDDoS 2500F protecting their fibre optic Internet connection from incoming traffic sees that all the traffic was dropped by the device even though they were n...
- Question #23
Refer to the exhibit. The exhibit shows two error messages from a FortiGate root Security Fabric device when you try to configure a new connection to a FortiClient EMS Server. Refe...
- Question #24
An administrator has configured a FortiGate device to authenticate SSL VPN users using dogotal certificates. A FortiAuthenticator is the certificate authority (CA) and the Online C...
- Question #25
Refer to the exhibit. To facilitate a large-scale deployment of SD-WAN/ADVPN with FortiGate devices, you are tasked with configuring the FortiGate devices to support injecting of I...
- Question #26
To prevent unauthorized access of their cloud assets, an administrator wants to enforce authentication on firewall policy ID 1. What change does the administrator need to make?
- Question #27
Refer to the exhibit. A customer wants FortiClient EMS configured to deploy to 1500 endpoints. The deployment will be integrated with FortiOS and there is an Active Directory serve...
- Question #28
Refer to the exhibit showing FortiGate configurations. ************************* * FMG-A CONFIG * ************************* config system ha set failover-mode vrrp set mode primary...
- Question #29
A remote IT team is in the process of deploying a FortiGate in their lab. The closed environment has been configured to support zero-touch provisioning from the FortiManager, on th...
- Question #30
Refer to the exhibit. A FortiWeb appliance is configured for load balancing web sessions to internal web servers. The Server Pool is configured as shown in the exhibit. How will th...
- Question #31
The device IP 10.1.100.40 downloads a file from the FTP server IP 192.168.4.50. Referring to the exhibit, what will be the traffic flow behavior if ADVPN is configured in this envi...
- Question #32
Given the exhibits, which two routes will be active in me routing table on the HQ firewall? (Choose two.) Refer to the exhibits: Topology: [Image of AS 64511 FGT_A (HQ), ISP 1, AS...
- Question #33
The exhibits show a diagram of a requested topology and the base IPsec configuration. A customer asks you to configure ADVPN via two internet underlays. The requirement is that you...
- Question #34
You are creating the CLI script to be used on a new SD-WAN deployment. You will have branches with a different number of internet connections and want to be sure there is no need t...
- Question #35
You must configure an environment with dual-homed servers connected to a pair of FortiSwitch units using an MCLAG. Multicast traffic is expected in this environment, and should ens...
- Question #36
What is the Forward Error Correction behavior if the SD-WAN network traffic download is 500 Mbps and has 8% of packet loss in the environment?
- Question #37
Given the information shown in the output, which two statements are true? (Choose two.)
- Question #38
Which two methods are supported for importing user defined Lookup Table Data into the FortiSIEM? (Choose two.)
- Question #39
What is the benefit of using FortiGate NAC LAN Segments?
- Question #40
You are troubleshooting a FortiMail Cloud service integrated with Office 365 where outgoing emails are not reaching the recipients' mail server to FortiMail (WAN)). What are two po...
- Question #41
Which two statements correctly describe the expected behavior when running this template? (Choose two.)
- Question #42
A FortiGate cluster (CL-1) protects a data center hosting multiple web applications. A pair of FortiADC devices are already configured for SSL decryption (FAD-1), and re-encryption...
- Question #43
You are migrating the branches of a customer to FortiGate devices. They require independent routing tables on the LAN side of the network. They have about 20 branches with no inter...
- Question #44
You must analyze an event that happened at 20:37 UTC. date=2022-07-11 time=10:37:09 eventtime=165757829014946018 tz="-1000" logid="0000000022" type="traffic" subtype="forward" leve...
- Question #45
A customer is planning on moving their secondary data center to a cloud-based IaaS. They want to place all the Oracle-based systems on Oracle Cloud, while the other systems will be...
- Question #46
Refer to the exhibit, which shows the high availability configuration for the FortiAuthenticator (FACT1). [Image of GUI] GUI Access Based on this information, which statement is tr...
- Question #47
Which two statements are correct on a FortiGate using the FortiGuard Outbreak Protection Service (VOS)? (Choose two.)
- Question #48
SD-WAN is configured on a FortiGate. You notice that when one of the internet links has high latency the time to resolve names using DNS from FortiGate is very high. You must ensur...
- Question #49
Refer to the exhibits. A customer is trying to set up a VPN with a FortiGate, but they do not have a backup of the configuration. Output during a troubleshooting session is shown i...
- Question #50
Refer to the exhibit. You have deployed a security fabric with three FortiGate devices as shown in the exhibit. [Image: Diagram showing FGT_1 (Root FortiGate), FGT_2 (Downstream Fo...