Free NSE4_FGT-6.2 Exam Braindumps (page: 7)

Page 6 of 32

An administrator wants to create a policy-based IPsec VPN tunnel between two FortiGate devices Winch configuration steps must be performed on both devices to support this scenario? (Choose three.)

  1. Define the phase 1 parameters, without enabling IPsec interface mode
  2. Define the phase 2 parameters.
  3. Set the phase 2 encapsulation method to transport mode
  4. Define at least one firewall policy, with the action set to IPsec.
  5. Define a route to the remote network over the IPsec tunnel.

Answer(s): C,D,E



Which of the following statements about NTLM authentication are correct? (Choose two.)

  1. It is useful when users log in to DCs that are not monitored by a collector agent.
  2. It takes over as the primary authentication method when configured alongside FSSO.
  3. Multi-domain environments require DC agents on every domain controller.
  4. NTLM-enabled web browsers are required.

Answer(s): A,D



View the certificate shown to the exhibit, and then answer the following question:

The CA issued this certificate to which entity?

  1. A root CA
  2. A person
  3. A bridge CA
  4. A subordinate CA

Answer(s): A



Why does FortiGate keep TCP sessions in the session table for some seconds even after both sides (client and server) have terminated the session?

  1. To remove the NAT operation.
  2. To generate logs
  3. To finish any inspection operations.
  4. To allow for out-of-order packets that could arrive after the FIN/ACK packets.

Answer(s): D






Post your Comments and Discuss Fortinet NSE4_FGT-6.2 exam with other Community members:

NSE4_FGT-6.2 Discussions & Posts