Free NSE4_FGT-5.6 Exam Braindumps (page: 3)

Page 2 of 47

How can you configure the explicit web proxy to block HTTP packets that request a specific HTTP method?

  1. Create an explicit proxy address that matches the HTTP method and apply it to an explicit proxy policy with the action Deny.
  2. Apply a web filter profile to an explicit proxy policy that blocks the HTTP method.
  3. Create a firewall service that matches the HTTP method and apply it to an explicit proxy policy with the action Deny.
  4. Create a DNS filter that matches the HTTP method and apply it to an explicit proxy policy with the action Deny.

Answer(s): A



Firewall policies dictate whether a user or device can (or cannot) authenticate to a network.
Which statements are true regarding firewall authentication? (Choose two.)

  1. In order to authenticate a specific user, the firewall policy must include .., both the IP address and the user as the source.
  2. Firewall policies can be configured to authenticate certificate users.
  3. Users are forced to actively authenticate when the following protocols are disabled in the firewall policy: HTTP, HTTPS, FTP, Telnet.
  4. The order of the firewall policies always determine whether a user's credentials are determined actively or passively.

Answer(s): A,B



View the exhibit. You are trying to go to http://www.clailymotion.com (Dailymotion) from the computer behind the FortiGate.
Which statement is correct regarding this application control profile?



  1. Dailymotion will be blocked, as the Video/Audio category is blocked.
  2. Dailymotion will be allowed, based on application overrides.
  3. Dailymotion will be blocked, based on filter overrides.
  4. Dailymotion will be allowed only if the action for Dailymotion is set to authenticate in application overrides.

Answer(s): B



What statement describes what DNS64 does?

  1. Converts DNS A record lookups to AAAA record lookups.
  2. Translates the destination IPv6 address of the DNS traffic to an IPv4 address.
  3. Synthesizes DNS AAAA records from A records.
  4. Translates the destination IPv4 address of the DNS traffic to an IPv6 address.

Answer(s): B






Post your Comments and Discuss Fortinet NSE4_FGT-5.6 exam with other Community members:

NSE4_FGT-5.6 Discussions & Posts