Font size
Worksheetsfiguritas 2
Total questions: 19
Worksheet time: 12mins
refer to the exhibit. which contains a radius server configuration. an administrator added a configuration for a new RADIUS server while configuring the administrator selected the include in every user group option. what will be the impact of using include in every user group option in a RADIUS configuration? 66
this option places the RADIUS server, and all users who can authenticate against that server into every fortigate user group
this option places all fortigate users and groups required to authenticate into the RADIUS server which in this case is fortiauthenticator
this option places the RADIUS server and all users who can authenticate against that server, into every radius group
this option places all users into every RADIUS user group, including groups that are used for the LDAP server on fortigate
refer to the exhibit. which contains a radius server configuration. an administrator added a configuration for a new RADIUS server while configuring the administrator selected the include in every user group option. what will be the impact of using include in every user group option in a RADIUS configuration? 66
this option places the RADIUS server, and all users who can authenticate against that server into every fortigate user group
this option places all fortigate users and groups required to authenticate into the RADIUS server which in this case is fortiauthenticator
this option places the RADIUS server and all users who can authenticate against that server, into every radius group
this option places all users into every RADIUS user group, including groups that are used for the LDAP server on fortigate
the exhibit shows a diagram of a fortigate device connected to the network, the firewall policy and VIP configuration on the fortigate device, and the routing table on the ISP router................(68)
in the VIP configuration. enable arp-reply
enable port forwarding on the, server to map the external service port to the internal service port
in the firewall policy configuration, enable match-vip
configure a loopback interface with address 203.0.113.2/32
the exhibit shows a diagram of a fortigate device connected to the network, the firewall policy and VIP configuration on the fortigate device, and the routing table on the ISP router................(68)
in the VIP configuration. enable arp-reply
enable port forwarding on the, server to map the external service port to the internal service port
in the firewall policy configuration, enable match-vip
configure a loopback interface with address 203.0.113.2/32
what are the two results of this configuration? choose two. 69
device detection on all interfaces is enforced for 30 minutes
the number of logs generated by denied traffic is reduced
a session for denied traffic is created
denied users are blocked for 30 minutes
what are the two results of this configuration? choose two. 69
device detection on all interfaces is enforced for 30 minutes
the number of logs generated by denied traffic is reduced
a session for denied traffic is created
denied users are blocked for 30 minutes
exhibit a shows system performance output exhibit B shows a fortigate configured with the default configuration of high memory usage thresholds. based on the system performance output which two statement are correct?choose two 70
administrators can access fortigate only through the console port
fortigate will start sending all files to fortisandbox for inspection
fortigate has entered conserve mode
adminstrators cannot change the configuration
exhibit a shows system performance output exhibit B shows a fortigate configured with the default configuration of high memory usage thresholds. based on the system performance output which two statement are correct?choose two 70
administrators can access fortigate only through the console port
fortigate will start sending all files to fortisandbox for inspection
fortigate has entered conserve mode
adminstrators cannot change the configuration
the exhibits show the firewall policies and the objects used in the firewall policies. the administrator is using the policy lookup feature and has entered the search criteria shown in the exhibit. which policy will be highlighted, based on the input criteria? 71
policies with ID 2 and 3
policy with ID 4
policy with ID 5
policy with ID 1
refer to the exhibit showing a debug output. which two statements about the debug flow output are correct? choose two. 76
the default route is required to receive a reply
a new traffic setsion or is created
a firewall policy alloweb the connection
the debug flow is of ICMP traffic
refer to the exhibit showing a debug output. which two statements about the debug flow output are correct? choose two. 76
the default route is required to receive a reply
a new traffic setsion or is created
a firewall policy alloweb the connection
the debug flow is of ICMP traffic
examine the intrusion prevention system(IPS) diagnostic command shown in the exhibit if option 5 is used with the IPS diagnostic command and the outcome is a decrease in the CPU usage, what is the correct conclusion?77
the ips engine was blocking all traffic
the ips engine will continue to run in a normal state
the IPS engine was inspecting high volume of traffic
the IPS engine was enable to prevent an intrusion attack
examine the intrusion prevention system(IPS) diagnostic command shown in the exhibit if option 5 is used with the IPS diagnostic command and the outcome is a decrease in the CPU usage, what is the correct conclusion?77
the ips engine was blocking all traffic
the ips engine will continue to run in a normal state
the IPS engine was inspecting high volume of traffic
the IPS engine was enable to prevent an intrusion attack
given the routing database shown in the exhibit, which two statement are correct? choose two . 78
the port3 default route has the lowest metric
the port3 default route has the highest distance
there will be eight routes active in the routing table
the port1 and port2 default routes are active in the routing table
given the routing database shown in the exhibit, which two statement are correct? choose two . 78
the port3 default route has the lowest metric
the port3 default route has the highest distance
there will be eight routes active in the routing table
the port1 and port2 default routes are active in the routing table
which IP address will be used to source NAT the internet traffic coming from a workstation with the IP address 10.0.1.10? 81
10.200.1.10
10.200.3.1
10.200.1.1
10.200.1.100
which IP address will be used to source NAT the internet traffic coming from a workstation with the IP address 10.0.1.10? 81
10.200.1.10
10.200.3.1
10.200.1.1
10.200.1.100
the exhibit shows the output of a diagnose command what does the output reveal the policy route ?84
it is an ISDB policy route with an SDWAN rule
it is an ISDB route in policy route
it is a regular policy route
it is an SDWAN rule in policy route
the exhibit shows the output of a diagnose command what does the output reveal the policy route ?84
it is an ISDB policy route with an SDWAN rule
it is an ISDB route in policy route
it is a regular policy route
it is an SDWAN rule in policy route
