Answer : B
Explanation:
References:
http://cookbook.fortinet.com/troubleshooting-fortigate-installation/
FortiGate1 has a gateway-to-gateway IPsec VPN to FortiGate2. The entire IKE negotiation between FortiGate1 and FortiGate2 is on UDP port 500. A PC on FortuGate2s local area network is sending continuous ping requests over the VPN tunnel to a PC of FortiGate1s local area network. No other traffic is sent over the tunnel.
Answer : C
Explanation:
References:
http://kb.fortinet.com/kb/documentLink.do?externalID=FD35337
The SECOPS team in your company has started a new project to store all logging data in a disaster recovery center. All FortiGates will log to a secondary FortiAnalyzer and establish a TCP session to send logs to the syslog server.
Which two configurations will achieve this goal? (Choose two.)
Answer : AC
Explanation:
https://forum.fortinet.com/tm.aspx?m=122848
Answer : D
You want to enable traffic between 2001:db8:1::/64 and 2001:db8:2::/64 over the public
IPv4 Internet.
Answer : BD
Explanation:
References:
http://docs.fortinet.com/uploaded/files/1969/IPv6%20Handbook%20for%20FortiOS%205.2. pdf
Answer : D
Explanation:
References:
http://kb.fortinet.com/kb/documentLink.do?externalID=FD38544
You verified that application control is working from previous configured categories. You just added Skype on blocked signatures. However, after applying the profile to your firewall policy, clients running Skype can still connect and use the application.
What are two causes of this problem? (Choose two.)
Answer : AB
Which three statements about throughput on a wireless network are true? (Choose three.)
Answer : B,C,D
Explanation:
References:
http://www.tp-link.in/faq-499.html
You have replaced an explicit proxy Web filter with a FortiGate. The human resources department requires that all URLs be logged. Users are reporting that their browsers are now indicating certificate errors as shown in the exhibit.
Answer : D
Explanation:
For https traffic inspection, client machine should install fortigates ssl certificate
You are asked to implement a wireless network for a conference center and need to provision a high number of access points to support a large number of wireless client connections.
Which statement describes a valid solution for this requirement?
Answer : D
Answer : C
Explanation:
References:
http://docs.fortinet.com/uploaded/files/2813/fortigate-sip-54.pdf
Answer : B
Explanation:
References:
http://docs.fortinet.com/uploaded/files/2905/FortiManager-5.4.0-Administration-Guide.pdf
Which VPN protocol is supported by FortiGate units?
Answer : BC
You are investigating a problem related to FTP active mode. You use a test PC with IP address 10.100.60.5 to connect to the FTP server at 172.16.133.50 and transfer a large file. The FortiGate translates source address (SNAT) in network 10.100.60.0/24 to the IP address 172.16.133.1.
Which two groups of CLI commands allow you to see information related to this FTP connection (Choose two.)
Answer : A,D
Explanation:
FTP active on port 21 and passive uses port 20
Answer : B,C,E
Explanation:
References:
http://kb.fortinet.com/kb/viewContent.do?externalId=FD30042
Have any questions or issues ? Please dont hesitate to contact us