Latest Certified Success Dumps Download

CISCO, MICROSOFT, COMPTIA, HP, IBM, ORACLE, VMWARE
FCNSA.v5 Examination questions (September)

Achieve New Updated (September) Fortinet FCNSA.v5 Examination Questions 21-30

September 24, 2015

Ensurepass

 

QUESTION 21

Which of the following are valid FortiGate device interface methods for handling DNS requests? (Select all that apply.)

 

A.

Forward-only

B.

Non-recursive

C.

Recursive

D.

Iterative

E.

Conditional-forward

 

Answer: ABC

 

 

QUESTION 22

A client can create a secure connection to a FortiGate device using SSL VPN in web-only mode.

 

Which one of the following statements is correct regarding the use of web-only mode SSL VPN?

 

A.

Web-only mode supports SSL version 3 only.

B.

A Fortinet-supplied plug-in is required on the web client to use web-only mode SSL VPN.

C.

Web-only mode requires the user to have a web browser that supports 64-bit cipher length.

D.

The JAVA run-time environment must be installed on the client to be able to connect to a web-only mode SSL VPN.

 

Answer: C

 

 

QUESTION 23

Which of the following products is designed to manage multiple FortiGate devices?

 

 

 

 

 

A.

FortiGate device

B.

FortiAnalyzer device

C.

FortiClient device

D.

FortiManager device

E.

FortiMail device

F.

FortiBridge device

 

Answer: D

 

 

QUESTION 24

Which of the following statements is correct regarding a FortiGate unit operating in NAT/Route mode?

 

A.

The FortiGate unit applies NAT to all traffic.

B.

The FortiGate unit functions as a Layer 3 device.

C.

The FortiGate unit functions as a Layer 2 device.

D.

The FortiGate unit functions as a router and the firewall function is disabled.

 

Answer: B

 

 

QUESTION 25

Users may require access to a web site that is blocked by a policy. Administrators can give users the ability to override the block.Which of the following statements regarding overrides are correct? (Select all that apply.)

 

A.

A protection profile may have only one user group defined as an override group.

B.

A firewall user group can be used to provide override privileges for FortiGuard Web Filtering.

C.

Authentication to allow the override is based on a user’s membership in a user group.

D.

Overrides can be allowed by the administrator for a specific period of time.

 

Answer: BCD

 

 

QUESTION 26

Which of the following spam filtering methods are supported on the FortiGate unit? (Select

 

 

 

 

all that apply.)

 

A.

IP Address Check

B.

Open Relay Database List (ORDBL)

C.

Black/White List

D.

Return Email DNS Check

E.

Email Checksum Check

 

Answer: ABCDE

 

 

QUESTION 27

Which of the following antivirus and attack definition update options are supported by FortiGate units? (Select all that apply.)

 

A.

Manual update by downloading the signatures from the support site.

B.

Pull updates from the FortiGate device

C.

Push updates from the FortiGuard Distribution Network.

D.

“update-AV/AS” command from the CLI

 

Answer: ABC

 

 

QUESTION 28

The default administrator profile that is assigned to the default “admin” user on a FortGate device is:____________________.

 

A.

trusted-admin

B.

super_admin

C.

super_user

D.

admin

E.

fortinet-root

 

Answer: B

 

 

QUESTION 29

 

When firewall policy authentication is enabled, only traffic on supported protocols will trigger an authentication challenge.

 

Select all supported protocols from the following:

 

A.

SMTP

B.

SSH

C.

HTTP

D.

FTP

E.

SCP

 

Answer: CD

 

 

QUESTION 30

Which email filter is NOT available on a FortiGate device?

 

A.

Sender IP reputation database.

B.

URLs included in the body of known SPAM messages.

C.

Email addresses included in the body of known SPAM messages.

D.

Spam object checksums.

E.

Spam grey listing.

 

Answer: E

Free VCE & PDF File for Fortinet FCNSA.v5 Real Exam

Instant Access to Free VCE Files: CompTIA | VMware | SAP …
Instant Access to Free PDF Files: CompTIA | VMware | SAP …