Get all latest (August) Fortinet FCNSA.v5 Actual Test 51-60

Ensurepass

QUESTION 51

By default the Intrusion Protection System (IPS) on a FortiGate unit is set to perform which action?

 

A.

Block all network attacks.

B.

Block the most common network attacks.

C.

Allow all traffic.

D.

Allow and log all traffic.

 

Correct Answer: C

 

 

QUESTION 52

In which order are firewall policies processed on the FortiGate unit?

 

A.

They are processed from the top down as they appear in Web Config.

B.

They are processed based on the policy ID number shown in the left hand column of the policy window.

C.

They are processed using a policy hierarchy scheme that allows for multiple decision branching.

D.

They are processed based on a priority value assigned through the priority column in the policy window.

 

Correct Answer: A

 

 

QUESTION 53

Encrypted backup files provide which of the following benefits? (Select all that apply.)

 

A.

Integrity of the backup file is protected since it cannot be easily modified when encrypted.

B.

Prevents the backup file from becoming corrupted.

C.

Protects details of the device’s configuration settings from being discovered while the backup file is in transit. For example, transferred to a data centers for system recovery.

D.

A copy of the encrypted backup file is automatically pushed to the FortiGuard Distribution Service (FDS) for disaster recovery purposes. If the backup file becomes corrupt it can be retrieved through FDS.

E.

Fortinet Technical Support can recover forgotten passwords with a backdoor passphrase.

 

Correct Answer: AC

 

 

QUESTION 54

Which of the following antivirus and attack definition update features are supported by FortiGate units? (Select all that apply.)

 

A.

Manual, user-initiated updates from the FortiGuard Distribution Network.

B.

Hourly, daily, or weekly scheduled antivirus and attack definition and antivirus engine updates from the FortiGuard Distribution Network.

C.

Push updates from the FortiGuard Distribution Network.

D.

Update status including version numbers, expiry dates, and most recent update dates and times.

 

Correct Answer: ABCD

 

 

QUESTION 55

FortiGate units are preconfigured with four default protection profiles. These protection profiles are used to control the

type of content inspection to be performed. What action must be taken for one of these profiles to become active?

 

A.

The protection profile must be assigned to a firewall policy.

B.

The “Use Protection Profile” option must be selected in the Web Config tool under the sections for AntiVirus, IPS, WebFilter, and AntiSpam.

C.

The protection profile must be set as the Active Protection Profile.

D.

All of the above.

 

Correct Answer: A

 

 

 

 

QUESTION 56

Which one of the following statements is correct about raw log messages?

 

A.

Logs have a header and a body section. The header will have the same layout for every log message. The body section will change layout from one type of log message to another.

B.

Logs have a header and a body section. The header and body will change layout from one type of log message to another.

C.

Logs have a header and a body section. The header and body will have the same layout for every log message.

D.

None of the above

 

Correct Answer: A

 

 

QUESTION 57

Which of the following components are contained in all FortiGate units from the FG50 models and up? (Select all that apply.)

 

A.

FortiASIC content processor.

B.

Hard Drive.

C.

Gigabit network interfaces.

D.

Serial console port.

 

Correct Answer: AD

 

 

QUESTION 58

You wish to create a firewall policy that applies only to traffic intended for your web server. The web server has an IP address of 192.168.2.2 and a /24 subnet mask. When defining the firewall address for use in this policy, which one of the following addresses is correct?

 

A.

192.168.2.0 / 255.255.255.0

B.

192.168.2.2 / 255.255.255.0

C.

192.168.2.0 / 255.255.255.255

D.

192.168.2.2 / 255.255.255.255

 

Correct Answer: D

 

 

QUESTION 59

Which of the statements below are true regarding firewall policy disclaimers? (Select all that apply.)

 

A.

User must accept the disclaimer to proceed with the authentication process.

B.

The disclaimer page is customizable.

C.

The disclaimer cannot be used in combination with user authentication.

D.

The disclaimer can only be applied to wireless interfaces.

 

Correct Answer: AB

 

 

 

 

QUESTION 60

The Idle Timeout setting on a FortiGate unit applies to which of the following?

 

A.

Web browsing

B.

FTP connections

C.

User authentication

D.

Administrator access

E.

Web filtering overrides.

 

Correct Answer: D

 

Free VCE & PDF File for Fortinet FCNSA.v5 Real Exam

Instant Access to Free VCE Files: CompTIA | VMware | SAP …
Instant Access to Free PDF Files: CompTIA | VMware | SAP …

This entry was posted in FCNSA.v5 Real Exam (August) and tagged , , , , , , . Bookmark the permalink.