Free Fortinet NSE4_FGT-6.4 Exam Braindumps (page: 15)

Which two protocol options are available on the CLI but not on the GUI when configuring an SD-WAN Performance SLA? (Choose two.)

  1. DNS
  2. ping
  3. udp-echo
  4. TWAMP

Answer(s): C,D



Refer to the exhibit.



Which contains a session diagnostic output.
Which statement is true about the session diagnostic output?

  1. The session is in SYN_SENT state.
  2. The session is in FIN_ACK state.
  3. The session is in FTN_WAIT state.
  4. The session is in ESTABLISHED state.

Answer(s): A

Explanation:

Indicates TCP (proto=6) session in SYN_SENT state (proto=state=2) https://kb.fortinet.com/kb/viewContent.do?externalId=FD30042



Refer to the exhibit showing a debug flow output.



Which two statements about the debug flow output are correct? (Choose two.)

  1. The debug flow is of ICMP traffic.
  2. A firewall policy allowed the connection.
  3. A new traffic session is created.
  4. The default route is required to receive a reply.

Answer(s): A,C



In consolidated firewall policies, IPv4 and IPv6 policies are combined in a single consolidated policy. Instead of separate policies.
Which three statements are true about consolidated IPv4 and IPv6 policy configuration? (Choose three.)

  1. The IP version of the sources and destinations in a firewall policy must be different.
  2. The Incoming Interface. Outgoing Interface. Schedule, and Service fields can be shared with both IPv4 and IPv6.
  3. The policy table in the GUI can be filtered to display policies with IPv4, IPv6 or IPv4 and IPv6 sources and destinations.
  4. The IP version of the sources and destinations in a policy must match.
  5. The policy table in the GUI will be consolidated to display policies with IPv4 and IPv6 sources and destinations.

Answer(s): B,D,E






Post your Comments and Discuss Fortinet NSE4_FGT-6.4 exam prep with other Community members:

NSE4_FGT-6.4 Exam Discussions & Posts