wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

figuritas 2

Total questions: 19

Worksheet time: 12mins

Name
Class
Date
1.

refer to the exhibit. which contains a radius server configuration. an administrator added a configuration for a new RADIUS server while configuring the administrator selected the include in every user group option. what will be the impact of using include in every user group option in a RADIUS configuration? 66

a)

this option places the RADIUS server, and all users who can authenticate against that server into every fortigate user group

b)

this option places all fortigate users and groups required to authenticate into the RADIUS server which in this case is fortiauthenticator

c)

this option places the RADIUS server and all users who can authenticate against that server, into every radius group

d)

this option places all users into every RADIUS user group, including groups that are used for the LDAP server on fortigate

2.

refer to the exhibit. which contains a radius server configuration. an administrator added a configuration for a new RADIUS server while configuring the administrator selected the include in every user group option. what will be the impact of using include in every user group option in a RADIUS configuration? 66

a)

this option places the RADIUS server, and all users who can authenticate against that server into every fortigate user group

b)

this option places all fortigate users and groups required to authenticate into the RADIUS server which in this case is fortiauthenticator

c)

this option places the RADIUS server and all users who can authenticate against that server, into every radius group

d)

this option places all users into every RADIUS user group, including groups that are used for the LDAP server on fortigate

3.

the exhibit shows a diagram of a fortigate device connected to the network, the firewall policy and VIP configuration on the fortigate device, and the routing table on the ISP router................(68)

a)

in the VIP configuration. enable arp-reply

b)

enable port forwarding on the, server to map the external service port to the internal service port

c)

in the firewall policy configuration, enable match-vip

d)

configure a loopback interface with address 203.0.113.2/32

4.

the exhibit shows a diagram of a fortigate device connected to the network, the firewall policy and VIP configuration on the fortigate device, and the routing table on the ISP router................(68)

a)

in the VIP configuration. enable arp-reply

b)

enable port forwarding on the, server to map the external service port to the internal service port

c)

in the firewall policy configuration, enable match-vip

d)

configure a loopback interface with address 203.0.113.2/32

5.

what are the two results of this configuration? choose two. 69

a)

device detection on all interfaces is enforced for 30 minutes

b)

the number of logs generated by denied traffic is reduced

c)

a session for denied traffic is created

d)

denied users are blocked for 30 minutes

6.

what are the two results of this configuration? choose two. 69

a)

device detection on all interfaces is enforced for 30 minutes

b)

the number of logs generated by denied traffic is reduced

c)

a session for denied traffic is created

d)

denied users are blocked for 30 minutes

7.

exhibit a shows system performance output exhibit B shows a fortigate configured with the default configuration of high memory usage thresholds. based on the system performance output which two statement are correct?choose two 70

a)

administrators can access fortigate only through the console port

b)

fortigate will start sending all files to fortisandbox for inspection

c)

fortigate has entered conserve mode

d)

adminstrators cannot change the configuration

8.

exhibit a shows system performance output exhibit B shows a fortigate configured with the default configuration of high memory usage thresholds. based on the system performance output which two statement are correct?choose two 70

a)

administrators can access fortigate only through the console port

b)

fortigate will start sending all files to fortisandbox for inspection

c)

fortigate has entered conserve mode

d)

adminstrators cannot change the configuration

9.

the exhibits show the firewall policies and the objects used in the firewall policies. the administrator is using the policy lookup feature and has entered the search criteria shown in the exhibit. which policy will be highlighted, based on the input criteria? 71

a)

policies with ID 2 and 3

b)

policy with ID 4

c)

policy with ID 5

d)

policy with ID 1

10.

refer to the exhibit showing a debug output. which two statements about the debug flow output are correct? choose two. 76

a)

the default route is required to receive a reply

b)

a new traffic setsion or is created

c)

a firewall policy alloweb the connection

d)

the debug flow is of ICMP traffic

11.

refer to the exhibit showing a debug output. which two statements about the debug flow output are correct? choose two. 76

a)

the default route is required to receive a reply

b)

a new traffic setsion or is created

c)

a firewall policy alloweb the connection

d)

the debug flow is of ICMP traffic

12.

examine the intrusion prevention system(IPS) diagnostic command shown in the exhibit if option 5 is used with the IPS diagnostic command and the outcome is a decrease in the CPU usage, what is the correct conclusion?77

a)

the ips engine was blocking all traffic

b)

the ips engine will continue to run in a normal state

c)

the IPS engine was inspecting high volume of traffic

d)

the IPS engine was enable to prevent an intrusion attack

13.

examine the intrusion prevention system(IPS) diagnostic command shown in the exhibit if option 5 is used with the IPS diagnostic command and the outcome is a decrease in the CPU usage, what is the correct conclusion?77

a)

the ips engine was blocking all traffic

b)

the ips engine will continue to run in a normal state

c)

the IPS engine was inspecting high volume of traffic

d)

the IPS engine was enable to prevent an intrusion attack

14.

given the routing database shown in the exhibit, which two statement are correct? choose two . 78

a)

the port3 default route has the lowest metric

b)

the port3 default route has the highest distance

c)

there will be eight routes active in the routing table

d)

the port1 and port2 default routes are active in the routing table

15.

given the routing database shown in the exhibit, which two statement are correct? choose two . 78

a)

the port3 default route has the lowest metric

b)

the port3 default route has the highest distance

c)

there will be eight routes active in the routing table

d)

the port1 and port2 default routes are active in the routing table

16.

which IP address will be used to source NAT the internet traffic coming from a workstation with the IP address 10.0.1.10? 81

a)

10.200.1.10

b)

10.200.3.1

c)

10.200.1.1

d)

10.200.1.100

17.

which IP address will be used to source NAT the internet traffic coming from a workstation with the IP address 10.0.1.10? 81

a)

10.200.1.10

b)

10.200.3.1

c)

10.200.1.1

d)

10.200.1.100

18.

the exhibit shows the output of a diagnose command what does the output reveal the policy route ?84

a)

it is an ISDB policy route with an SDWAN rule

b)

it is an ISDB route in policy route

c)

it is a regular policy route

d)

it is an SDWAN rule in policy route

19.

the exhibit shows the output of a diagnose command what does the output reveal the policy route ?84

a)

it is an ISDB policy route with an SDWAN rule

b)

it is an ISDB route in policy route

c)

it is a regular policy route

d)

it is an SDWAN rule in policy route