Free NSE4_FGT-6.2 Exam Braindumps (page: 15)

Page 14 of 32

Which statement regarding the firewall policy authentication timeout is true?

  1. It is an idle timeout. The FortiGate considers a user to be "idle" if it does not see any packets coming from the user's source IP.
  2. It is a hard timeout. The FortiGate removes the temporary policy for a user's source IP address after this timer has expired.
  3. It is an idle timeout. The FortiGate considers a user to be "idle" if it does not see any packets coming from the user's source MA
  4. It is a hard timeout. The FortiGate removes the temporary policy for a user's source MAC address after this timer has expired.

Answer(s): A



Examine the exhibit, which contains a virtual IP and firewall policy configuration.


The WAN (port1) interface has the IP address 10.200.1.1/24. The LAN (port2) interface has the IP address 10.0.1.254/24.

The first firewall policy has NAT enabled on the outgoing interface address. The second firewall policy is configured with a VIP as the destination address.
Which IP address will be used to source NAT the Internet traffic coming from a workstation with the IP address 10.0.1.10/24?

  1. 10.200.1.10
  2. Any available IP address in the WAN (port1) subnet 10.200.1.0/24
  3. 10.200.1.1
  4. 10.0.1.254

Answer(s): C



What FortiGate components are tested during the hardware test? (Choose three.)

  1. Administrative access
  2. HA heartbeat
  3. CPU
  4. Hard disk
  5. Network interfaces

Answer(s): C,D,E



How do you format the FortiGate flash disk?

  1. Load a debug FortiOS image.
  2. Load the hardware test (HQIP) image.
  3. Execute the CLI command execute formatlogdisk.
  4. Select the format boot device option from the BIOS menu.

Answer(s): D






Post your Comments and Discuss Fortinet NSE4_FGT-6.2 exam with other Community members:

NSE4_FGT-6.2 Discussions & Posts