Free NSE4_FGT-5.6 Exam Braindumps (page: 15)

Page 14 of 47

Examine the exhibit.



A client workstation is connected to FortiGate port2. The Fortigate port1 is connected to an ISP router. Port2 and port3 are both configured as a software switch.
What IP address must be configured in the workstation as the default gateway? Response:

  1. The port2's IP address.
  2. The router's IP address.
  3. The FortiGate's management IP address.
  4. The software switch interface's IP address.

Answer(s): D



How can a browser trust a web-server certificate signed by a third party CA? Response:

  1. The browser must have the CA certificate that signed the web-server certificate installed.
  2. The browser must have the web-server certificate installed.
  3. The browser must have the private key of CA certificate that signed the web-browser certificate installed.
  4. The browser must have the public key of the web-server certificate installed.

Answer(s): A



Which statements about DNS filter profiles are true?
(Choose two.)

  1. They can inspect HTTP traffic.
  2. They must be applied in firewall policies with SSL inspection enabled.
  3. They can block DNS request to known botnet command and control servers.
  4. They can redirect blocked requests to a specific portal.

Answer(s): C,D



What must be selected in the Source field of a firewall policy? Response:

  1. At least one source user or user group object
  2. At least one address object
  3. At least one device object
  4. At least one source user, one source device, and one source address object

Answer(s): B






Post your Comments and Discuss Fortinet NSE4_FGT-5.6 exam with other Community members:

NSE4_FGT-5.6 Discussions & Posts