Free NSE8_811 Exam Braindumps (page: 2)

Page 2 of 18

Refer to the exhibit.



The exhibit shows a full-mesh topology between FortiGate and FortiSwitch devices. To deploy this configuration, two requirements must be met:

· 20 Gbps full duplex connectivity is available between each FortiGate and the FortiSwitch devices · The FortiGate HA must be in AP mode

Referring to the exhibit, what are two actions that will fulfill the requirements? (Choose two.)

  1. Configure the master FortiGate with one LAG and FortiLink split interface disabled on ports connected to cables A and C and make sure the same ports are used for cables B and D on the slave.
  2. Configure the master FortiGate with one LAG and FortiLink split interface enabled on ports connected to cables A and C and make sure the same ports are used for cables B and D on the slave.
  3. Configure both FortiSwitch devices as peers with ICL over cable E, create one MCLAG on ports connected to cables A and C, and create another MCLAG on ports connected to cables B and D.
  4. Configure both FortiSwitch devices as peers with ISL over cable E, create one MCLAG on ports connected to cables A and C, and create another MCLAG on ports connected to cables B and

Answer(s): A,C



You want to manage a FortiCloud service. The FortiGate shows up in your list devices on the FortiCloud Web site, but all management functions are either missing or grayed out.
Which statement a correct in this scenario?

  1. The managed FcrtGate a running a version of ForflOS that is either too new or too for FortCloud.
  2. The managed FortiGate requires that a FortiCloud management license be purchased and applied.
  3. You must manually configure system control-management on the FortiGate CLI and set the management type to fortiguard.
  4. The management tunnel mode on the managed FortiGate must be changed to normal.

Answer(s): C



Exhibit



Click the Exhibit button. The exhibit shows the steps for creating a URL rewrite policy on a FortiWeb.
Which statement represents the purpose of this policy?

  1. The policy redirects all HTTP URLs to HTTPS.
  2. The policy redirects all HTTPS URLs to HTTP.
  3. The policy redirects only HTTPS URLs containing the ^/ (. *) S string to HTTP.
  4. The pokey redirects only HTTP URLs containing the^/ ( .*)S string to HTTPS.

Answer(s): A

Explanation:

https://help.fortinet.com/fweb/581/Content/FortiWeb/fortiweb- admin/application_delivery.htm#application_delivery_1557589163_940788



You are asked to add a FortiDDoS to the network to combat detected slow connection attacks such as Slowloris.

Which prevention mode on FortiDDoS will protect you against this specific type of attack?

  1. aggressive aging mode
  2. rate limiting mode
  3. blocking mode
  4. asymmetric mode

Answer(s): A

Explanation:

https://help.fortinet.com/fddos/4-3-0/FortiDDoS/Understanding_FortiDDoS_Prevention_Mode.htm






Post your Comments and Discuss Fortinet NSE8_811 exam with other Community members:

NSE8_811 Exam Discussions & Posts