NSE4_FGT-6.2 Exam Details

  • Exam Code
    :NSE4_FGT-6.2
  • Exam Name
    :Fortinet NSE 4 - FortiOS 6.2
  • Certification
    :Fortinet Certifications
  • Vendor
    :Fortinet
  • Total Questions
    :142 Q&As
  • Last Updated
    :Jul 10, 2023

Fortinet NSE4_FGT-6.2 Online Questions & Answers

  • Question 61:

    View the exhibit.

    What does this raw log indicate? (Choose two.)

    A. FortiGate blocked the traffic.
    B. type indicates that a security event was recorded.
    C. 10.0.1.20 is the IP address for lavito.tk.
    D. policyid indicates that traffic went through the IPS firewall policy.

  • Question 62:

    When using WPAD DNS method, which FQDN format do browsers use to query the DNS server?

    A. srv_proxy./wpad.dat
    B. srv_tcp.wpad.
    C. wpad.
    D. proxy..wpad

  • Question 63:

    Which configuration objects can be selected for the Source field of a firewall policy? (Choose two.)

    A. Firewall service
    B. User or user group
    C. IP Pool
    D. FQDN address

  • Question 64:

    How does FortiGate verify the login credentials of a remote LDAP user?

    A. FortiGate regenerates the algorithm based on the login credentials and compares it to the algorithm stored on the LDAP server.
    B. FortiGate sends the user-entered credentials to the LDAP server for authentication.
    C. FortiGate queries the LDAP server for credentials.
    D. FortiGate queries its own database for credentials.

  • Question 65:

    An administrator has configured two VLAN interfaces:

    A DHCP server is connected to the VLAN10 interface. A DHCP client is connected to the VLAN5 interface. However, the DHCP client cannot get a dynamic IP address from the DHCP server. What is the cause of the problem?

    A. Both interfaces must belong to the same forward domain.
    B. The role of the VLAN10 interface must be set to server.
    C. Both interfaces must have the same VLAN ID.
    D. Both interfaces must be in different VDOMs.

  • Question 66:

    A FortiGate device has multiple VDOMs. Which statement about an administrator account configured with the default prof_admin profile is true?

    A. It can create administrator accounts with access to the same VDOM.
    B. It cannot have access to more than one VDOM.
    C. It can reset the password for the admin account.
    D. It can upgrade the firmware on the FortiGate device.

  • Question 67:

    What criteria does FortiGate use to look for a matching firewall policy to process traffic? (Choose two.)

    A. Services defined in the firewall policy.
    B. Incoming and outgoing interfaces
    C. Highest to lowest priority defined in the firewall policy.
    D. Lowest to highest policy ID number.

  • Question 68:

    Which Statements about virtual domains (VDOMs) arc true? (Choose two.)

    A. Transparent mode and NAT/Route mode VDOMs cannot be combined on the same FortiGate.
    B. Each VDOM can be configured with different system hostnames.
    C. Different VLAN sub-interface of the same physical interface can be assigned to different VDOMs.
    D. Each VDOM has its own routing table.

  • Question 69:

    If traffic matches a DLP filter with the action set to Quarantine IP Address, what action does FortiGate take?

    A. It notifies the administrator by sending an email.
    B. It provides a DLP block replacement page with a link to download the file.
    C. It blocks all future traffic for that IP address for a configured interval.
    D. It archives the data for that IP address.

  • Question 70:

    An employee connects to the https://example.com on the Internet using a web browser. The web server's certificate was signed by a private internal CA. The FortiGate that is inspecting this traffic is configured for full SSL inspection.

    This exhibit shows the configuration settings for the SSL/SSH inspection profile that is applied to the policy that is invoked in this instance. All other settings are set to defaults. No certificates have been imported into FortiGate. View the exhibit and answer the question that follows.

    Which certificate is presented to the employee's web browser?

    A. The web server's certificate.
    B. The user's personal certificate signed by a private internal CA.
    C. A certificate signed by Fortinet_CA_SSL.
    D. A certificate signed by Fortinet_CA_Untrusted.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Fortinet exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your NSE4_FGT-6.2 exam preparations and Fortinet certification application, do not hesitate to visit our Vcedump.com to find your solutions here.