Latest Certified Success Dumps Download

CISCO, MICROSOFT, COMPTIA, HP, IBM, ORACLE, VMWARE
NSE4 Examination questions (September)

Achieve New Updated (September) Fortinet NSE4 Examination questions Topic 7, Antivirus

September 25, 2015

Ensurepass

Topic 7, Antivirus

 

 

 

 

 

 

QUESTION 34  (Topic 7)

 

Which antivirus and attack definition update options are supported by FortiGate units? (Choose two.)

 

A.

Manual update by downloading the signatures from the support site.

B.

Pull updates from the FortiGate.

C.

Push updates from a FortiAnalyzer.

D.

execute fortiguard-AV-AS command from the CLI.

 

Answer: AB

 

 

QUESTION 35  (Topic 7)

 

Which statements regarding banned words are correct? (Choose two.)

 

A.

Content is automatically blocked if a single instance of a banned word appears.

B.

The FortiGate updates banned words on a periodic basis.

C.

The FortiGate can scan web pages and email messages for instances of banned words.

D.

Banned words can be expressed as simple text, wildcards and regular expressions.

 

Answer: CD

 

 

QUESTION 36  (Topic 7)

 

A FortiGate is configured to receive push updates from the FortiGuard Distribution Network, however, updates are not being received.

 

Which are two reasons for this problem? (Choose two.)

 

A.

The FortiGate is connected to multiple ISPs.

B.

There is a NAT device between the FortiGate and the FortiGuard Distribution Network.

C.

The FortiGate is in Transparent mode.

D.

The external facing interface of the FortiGate is configured to get the IP address from a DHCP server.

 

Answer: BD

 

 

 

QUESTION 37  (Topic 7)

 

Examine the exhibit; then answer the question below.

 

clip_image002

 

Which statement describes the green status indicators that appear next to the different FortiGuard Distribution Network services as illustrated in the exhibit?

 

A.

They indicate that the FortiGate has the latest updates available from the FortiGuard Distribution Network.

B.

They indicate that updates are available and should be downloaded from the FortiGuard Distribution Network to the FortiGate unit.

C.

They indicate that the FortiGate is in the process of downloading updates from the FortiGuard Distribution Network.

D.

They indicate that the FortiGate is able to connect to the FortiGuard Distribution Network.

 

Answer: D

 

 

QUESTION 38  (Topic 7)

 

Which antivirus inspection mode must be used to scan SMTP, FTP, POP3 and SMB protocols?

 

A.

Proxy-based.

B.

DNS-based.

C.

Flow-based.

D.

Man-in-the-middle.

 

 

 

 

 

Answer: C

 

 

QUESTION 39  (Topic 7)

 

Which statement is correct regarding virus scanning on a FortiGate unit?

 

A.

Virus scanning is enabled by default.

B.

Fortinet customer support enables virus scanning remotely for you.

C.

Virus scanning must be enabled in a security profile, which must be applied to a firewall policy.

D.

Enabling virus scanning in a security profile enables virus protection for all traffic flowing through the FortiGate.

 

Answer: C

 

Free VCE & PDF File for Fortinet NSE4 Real Exam

Instant Access to Free VCE Files: CompTIA | VMware | SAP …
Instant Access to Free PDF Files: CompTIA | VMware | SAP …