Free NSE4_FGT-7.0 Exam Braindumps (page: 12)

Page 12 of 44

When configuring a firewall virtual wire pair policy, which following statement is true?

  1. Any number of virtual wire pairs can be included, as long as the policy traffic direction is the same.
  2. Only a single virtual wire pair can be included in each policy.
  3. Any number of virtual wire pairs can be included in each policy, regardless of the policy traffic direction settings.
  4. Exactly two virtual wire pairs need to be included in each policy.

Answer(s): A


Reference:

https://kb.fortinet.com/kb/documentLink.do?externalID=FD48690



Refer to the exhibit, which contains a radius server configuration.


An administrator added a configuration for a new RADIUS server. While configuring, the administrator selected the Include in every user group option.

What will be the impact of using Include in every user group option in a RADIUS configuration?

  1. This option places all FortiGate users and groups required to authenticate into the RADIUS server, which, in this case, is FortiAuthenticator.
  2. This option places all users into every RADIUS user group, including groups that are used for the LDAP server on FortiGate.
  3. This option places the RADIUS server, and all users who can authenticate against that server, into every FortiGate user group.
  4. This option places the RADIUS server, and all users who can authenticate against that server, into every RADIUS group.

Answer(s): C


Reference:

https://docs.fortinet.com/document/fortigate/6.0.0/handbook/634373/authentication-servers



By default, FortiGate is configured to use HTTPS when performing live web filtering with FortiGuard servers.

Which CLI command will cause FortiGate to use an unreliable protocol to communicate with FortiGuard servers for live web filtering?

  1. set fortiguard-anycast disable
  2. set webfilter-force-off disable
  3. set webfilter-cache disable
  4. set protocol tcp

Answer(s): A


Reference:

https://kb.fortinet.com/kb/documentLink.do?externalID=FD48294



Which two configuration settings are synchronized when FortiGate devices are in an active-active HA cluster? (Choose two.)

  1. NTP
  2. DNS
  3. FortiGate hostname
  4. FortiGuard web filter cache

Answer(s): A,B



Page 12 of 44



Post your Comments and Discuss Fortinet NSE4_FGT-7.0 exam with other Community members:

mfundo commented on October 23, 2023
f you memorize all questions and answers you are going to get around 85% or more. Looks like some questions are no longer in the exam. But still good enoug to pass.
SOUTH AFRICA
upvote

Soharb commented on May 02, 2022
If you memorize all questions and answers you are going to get around 85% or more. Looks like some questions are no longer in the exam. But still good enoug to pass.
INDIA
upvote