Which of the following components are contained in all FortiGate units from the FG50 models and up? (Select all that apply.)
A. FortiASIC content processor.
B. Hard Drive.
C. Gigabit network interfaces.
D. Serial console port.
正解:A,D
質問 2:
A FortiGate 100 unit is configured to receive push updates from the FortiGuard Distribution Network, however, updates are not being received. Which of the following statements are possible reasons for this? (Select all that apply.)
A. There is a NAT device between the FortiGate unit and the FortiGuard Distribution Network.
B. The FortiGate unit is in Transparent mode.
C. The external facing interface of the FortiGate unit is configured to use DHCP.
D. The FortiGate unit has not been registered.
正解:A,C,D
質問 3:
You wish to create a firewall policy that applies only to traffic intended for your web server. The web server has an IP address of 192.168.2.2 and a /24 subnet mask. When defining the firewall address for use in this policy, which one of the following addresses is correct?
A. 192.168.2.0 / 255.255.255.255
B. 192.168.2.2 / 255.255.255.255
C. 192.168.2.2 / 255.255.255.0
D. 192.168.2.0 / 255.255.255.0
正解:B
質問 4:
Examine the exhibit shown below; then answer the question following it.
Which of the following statements best describes the green status indicators that appear next to the different FortiGuard Distribution Network services as illustrated in the exhibit?
A. They indicate that the FortiGate unit is able to connect to the FortiGuard Distribution Network.
B. They indicate that the FortiGate unit has the latest updates that are available from the FortiGuard Distribution Network.
C. They indicate that updates are available and should be downloaded from the FortiGuard Distribution Network to the FortiGate unit.
D. They indicate that the FortiGate unit is in the process of downloading updates from the FortiGuard Distribution Network.
正解:A
質問 5:
Which of the following statements is correct regarding a FortiGate unit operating in NAT/Route mode?
A. The FortiGate unit uses only DHCP-assigned IP addresses on the internal network.
B. The FortiGate unit must use public IP addresses on both the internal and external networks.
C. The FortiGate unit requires only a single IP address for receiving updates and configuring from a management computer.
D. The FortiGate unit commonly uses private IP addresses on the internal network but hides them using network address translation.
正解:D
質問 6:
An end user logs into the full-access SSL VPN portal and selects the Tunnel Mode option by clicking on the "Connect" button. The administrator has enabled split tunneling.
Given that the user authenticates against the SSL VPN policy shown in the image below, which statement below identifies the route that is added to the client's routing table.
A. A route to the destination matching the 'all' address object.
B. No route is added.
C. A default route.
D. A route to destination matching the 'WIN2K3' address object.
正解:D
水原** -
無事FCNSA.v5合格です。Pass4Testおかげです。短時間内に受験したい人におすすめだな。