Latest Certified Success Dumps Download

CISCO, MICROSOFT, COMPTIA, HP, IBM, ORACLE, VMWARE
925-201b Examination questions (September)

Achieve New Updated (September) Fortinet 925-201b Examination Questions 31-40

September 24, 2015

Ensurepass

 

QUESTION 31

What is the valid IPS option? Select all that apply.

 

A.

IPS signature

B.

IPS anomaly

C.

IPS engine

D.

IPS list

 

Answer: AB

Explanation: Valid IPS options are IPS Signature and IPS anomaly.

Not D IPS list do not exist

 

 

QUESTION 32

Which of the following default factory setting is true about Fortigate unit? Select all

 

that apply.

 

A.

internal 192.168.1.99 /24 ; http , https , ping , ssh access is enabled

B.

external 192.168.100.99/24 ; ping is enabled

C.

internal 192.168.1.99 /24 ; https , ping , ssh access is enabled

 

 

 

 

D.

external 192.168.100.99/24 ; ping & https is enabled

 

Answer: AB

 

 

QUESTION 33

What is the most efficient way to disable IPS signature? Select all that apply.

 

A.

set action to pass

B.

no logging

C.

set to drop

D.

set to clear

 

Answer: AB

 

 

QUESTION 34

What is the default ip address of FortiGate unit? Select all that apply.

 

A.

internal 192.168.1.99

B.

external 192.168.100.99

C.

internal 192.168.1.1

D.

external 192.168.100.1

 

Answer: AB

 

 

QUESTION 35

What is the valid format that can be entered in url blocking list? Select all that

 

apply.

 

A.

a top-level URL to block access to all pages on the website

B.

an IP address to block access to all page on the website

C.

a partial URL to block sub-domains

D.

a top-level domain suffix to block all URLs with the suffix

 

Answer: ABCD

 

 

 

QUESTION 36

How to block *.scr from HTTP download ?

 

A.

file blocking is enabled by default

B.

create or edit a protection profile , go to antivirus->file block , enable file block for http , add this protection profile to external -> internal policy

C.

create or edit a protection profile , go to antivirus->file block , enable file block for http , add this protection profile to internal -> external policy

D.

create or edit a protection profile , enable file block for http , add this protection profile to external -> internal policy

 

Answer: B

 

 

QUESTION 37

The precedence of web filtering is ?

 

A.

exempt list , url block list , url pattern list , fortiguard , content block

B.

url block list , url pattern list , exempt list , content block , fortiguard

C.

content block , fortiguard , url block list , url pattern list , exempt list

D.

url pattern list , fortiguard , content block , exempt list , url block list

 

Answer: B

 

 

QUESTION 38

What is the valid option of Fortigate HA schedule? Select all that apply.

 

A.

none , hub , least-connection , round-robin

B.

weighted round-robin , random , ip , ip port

C.

switch , ip , ip port

D.

priority , hub , least-connection

 

Answer: AB

 

 

QUESTION 39

IPSEC provide security service for ?

 

 

 

 

 

A.

data-link layer

B.

network lauer

C.

transport layer

D.

presentation layer

 

Answer: B

 

 

QUESTION 40

Fortigateunit can distribute WINS & DNS server address ?

 

A.

true , dhcp relay also supported

B.

false , but support dhcp relay

C.

false

D.

true

 

Answer: A

Free VCE & PDF File for Fortinet 925-201b Real Exam

Instant Access to Free VCE Files: CompTIA | VMware | SAP …
Instant Access to Free PDF Files: CompTIA | VMware | SAP …