لا تريد أن تفوت شيئا؟

نصائح اجتياز امتحان الشهادة

آخر أخبار الامتحانات ومعلومات الخصم

برعاية وحديثة من قبل خبرائنا

نعم، أرسل لي النشرة الإخبارية

خذ اختبارات أخرى عبر الإنترنت

السؤال #1
The exhibit contains a network diagram, central SNAT policy, and IP pool configuration. The WAN (port1) interface has the IP address 10.200.1.1/24. The LAN (port3) interface has the IP address 10.0.1.254/24. A firewall policy is configured to allow to destinations from LAN (port3) to WAN (port1). Central NAT is enabled, so NAT settings from matching Central SNAT policies will be applied. Which IP address will be used to source NAT the traffic, if the user on Local-Client (10.0.1.10) pings the IP address of
A. 10
B. 10
C. 10
D. 10
عرض الإجابة
اجابة صحيحة: B
السؤال #2
- (Exam Topic 2) Which three security features require the intrusion prevention system (IPS) engine to function? (Choose three.)
A. Web filter in flow-based inspection
B. Antivirus in flow-based inspection
C. DNS filter
D. Web application firewall
E. Application control
عرض الإجابة
اجابة صحيحة: AD
السؤال #3
- (Exam Topic 2) Refer to the FortiGuard connection debug output. Based on the output shown in the exhibit, which two statements are correct? (Choose two.)
A. A local FortiManager is one of the servers FortiGate communicates with
B. One server was contacted to retrieve the contract information
C. There is at least one server that lost packets consecutively
D. FortiGate is using default FortiGuard communication settings
عرض الإجابة
اجابة صحيحة: A
السؤال #4
- (Exam Topic 1) An administrator has configured a strict RPF check on FortiGate. Which statement is true about the strict RPF check?
A. The strict RPF check is run on the first sent and reply packet of any new session
B. Strict RPF checks the best route back to the source using the incoming interface
C. Strict RPF checks only for the existence of at cast one active route back to the source using the incoming interface
D. Strict RPF allows packets back to sources with all active routes
عرض الإجابة
اجابة صحيحة: AD
السؤال #5
- (Exam Topic 2) Based on the administrator profile settings, what permissions must the administrator set to run the diagnose firewall auth list CLI command on FortiGate?
A. Custom permission for Network
B. Read/Write permission for Log & Report
C. CLI diagnostics commands permission
D. Read/Write permission for Firewall
عرض الإجابة
اجابة صحيحة: BDE
السؤال #6
- (Exam Topic 2) Which of the following conditions must be met in order for a web browser to trust a web server certificate signed by a third-party CA?
A. The public key of the web server certificate must be installed on the browser
B. The web-server certificate must be installed on the browser
C. The CA certificate that signed the web-server certificate must be installed on the browser
D. The private key of the CA certificate that signed the browser certificate must be installed on the browser
عرض الإجابة
اجابة صحيحة: C
السؤال #7
What is the primary FortiGate election process when the HA override setting is disabled?
A. Connected monitored ports > System uptime > Priority > FortiGate Serial number
B. Connected monitored ports > HA uptime > Priority > FortiGate Serial number
C. Connected monitored ports > Priority > HA uptime > FortiGate Serial number
D. Connected monitored ports > Priority > System uptime > FortiGate Serial number
عرض الإجابة
اجابة صحيحة: B
السؤال #8
Why did FortiGate drop the packet?
A. It matched an explicitly configured firewall policy with the action DENY
B. The next-hop IP address is unreachable
C. It failed the RPF check
D. It matched the default implicit firewall policy
عرض الإجابة
اجابة صحيحة: B
السؤال #9
- (Exam Topic 1) An administrator wants to configure timeouts for users. Regardless of the user€?s behavior, the timer should start as soon as the user authenticates and expire after the configured value. Which timeout option should be configured on FortiGate?
A. auth-on-demand
B. soft-timeout
C. idle-timeout
D. new-session
E. hard-timeout
عرض الإجابة
اجابة صحيحة: E
السؤال #10
- (Exam Topic 2) To complete the final step of a Security Fabric configuration, an administrator must authorize all the devices on which device?
A. FortiManager
B. Root FortiGate
C. FortiAnalyzer
D. Downstream FortiGate
عرض الإجابة
اجابة صحيحة: CD

عرض الإجابات بعد التقديم

يرجى إرسال البريد الإلكتروني الخاص بك والواتس اب للحصول على إجابات الأسئلة.

ملحوظة: يرجى التأكد من صلاحية معرف البريد الإلكتروني وWhatsApp حتى تتمكن من الحصول على نتائج الاختبار الصحيحة.

بريد إلكتروني:
رقم الواتس اب/الهاتف: