Free NSE4_FGT-6.2 Exam Braindumps (page: 6)

Page 5 of 32

Examine the two static routes shown in the exhibit, then answer title following question.

Which of the following is the expected FortiGate behavior regarding these two routes to the same destination?

  1. FortiGate will load balance all traffic across both routes.
  2. FortiGate will use the port1 route as the primary candidate.
  3. FortiGate will route twice as much traffic to the port2 route
  4. FortiGate will only actuate the portl route m tlie routing table

Answer(s): C



Which of the following statements about central NAT are true? (Choose two.)

  1. IP tool references must be removed from existing firewall policies before enabling central NAT.
  2. Central NAT can be enabled or disabled from the CLI only.
  3. Source NAT, using central NAT, requires at least one central SNAT policy.
  4. Destination NAT, using central NAT, requires a VIP object as the destination address in a firewall policy.

Answer(s): A,B



Refer to the following exhibit.


Why is FortiGate not blocking the test file over FTP download?

  1. Deep-inspection must be enabled for FortiGate to fully scan FTP traffic.
  2. FortiGate needs to be operating in flow-based inspection mode in order to scan FTP traffic.
  3. The FortiSandbox signature database is required to successfully scan FTP traffic.
  4. The proxy options profile needs to scan FTP traffic on a non-standard port.

Answer(s): D



View the following exhibit, which shows the firewall policies and the object uses in the firewall policies.


Which of the following will be highlighted based oil the input criteria?

  1. Policy with ID 1.
  2. Policies with ID 2 and 3.
  3. Policy with ID 5.
  4. Policy with ID 4

Answer(s): B






Post your Comments and Discuss Fortinet NSE4_FGT-6.2 exam with other Community members:

NSE4_FGT-6.2 Discussions & Posts