Free NSE4_FGT-6.2 Exam Braindumps (page: 11)

Page 10 of 32

When using WPAD DNS method, winch FQDN format do browsers use to query the DNS server?

  1. Option A
  2. Option B
  3. Option C
  4. Option D

Answer(s): C



Examine the IPS sensor configuration and forward traffic logs shown in the exhibit; then, answer the question below.


An administrator has configured the WINDOS_SERVERS IPS sensor in an attempt to determine whether the influx of HTTPS traffic is an attack attempt or not. After applying the IPS sensor, FortiGate is still not generating any IPS logs for the HTTPS traffic.
What is a possible reason for this?

  1. The IPS filter is missing the Protocol: HTTPS option.
  2. The HTTPS signatures have not been added to the sensor.
  3. A DoS policy should be used, instead of an IPS sensor.
  4. A DoS policy should be used, instead of an IPS sensor.
  5. The firewall policy is not using a full SSL inspection profile.

Answer(s): E



What types of traffic and attacks can be blocked by a web application firewall (WAF) profile? (Choose three.)

  1. Traffic to botnet servers
  2. Traffic to inappropriate web sites
  3. Server information disclosure attacks
  4. Credit card data leaks
  5. SQL injection attacks

Answer(s): A,C,E



Which statement about DLP on FortiGate is true?

  1. It can archive files and messages.
  2. It can be applied to a firewall policy in a flow-based VDOM
  3. Traffic shaping can be applied to DLP sensors.
  4. Files can be sent to FortiSandbox for detecting DLP threats.

Answer(s): A






Post your Comments and Discuss Fortinet NSE4_FGT-6.2 exam with other Community members:

NSE4_FGT-6.2 Discussions & Posts