Free NSE4_FGT-5.6 Exam Braindumps (page: 14)

Page 13 of 47

What statement is true regarding the Service setting in a firewall policy? Response:

  1. it is optional to add a service in a firewall policy.
  2. It matches the traffic by port number.
  3. Only one service object can be added to the firewall policy.
  4. Administrators cannot create custom services objects.

Answer(s): B



An administrator has configured a dialup IPsec VPN with XAuth.
Which method statement best describes this scenario?

  1. Only digital certificates will be accepted as an authentication method in phase 1.
  2. Dialup clients must provide a username and password for authentication.
  3. Phase 1 negotiations will skip pre-shared key exchange.
  4. Dialup clients must provide their local ID during phase 2 negotiations.

Answer(s): B



Which of the following can be configured for shaping traffic in the Traffic Shaping Policy? (Choose two.)

  1. Application category
  2. Application
  3. Rate based category
  4. Cloud access security category

Answer(s): A,B



View the exhibit.



What is the effect of the Disconnect Cluster Member operation as shown in the exhibit? (Choose two.)

  1. The HA mode changes to standalone.
  2. The firewall policies are deleted on the disconnected member.
  3. The system hostname is set to the FortiGate serial number.
  4. The port3 is configured with an IP address for management access.

Answer(s): A,D






Post your Comments and Discuss Fortinet NSE4_FGT-5.6 exam with other Community members:

NSE4_FGT-5.6 Discussions & Posts