Fortinet NSE4_FGT-7.0 Exam Practice Questions (P. 1)
- Full Access (106 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #1
Which two statements about FortiGate FSSO agentless polling mode are true? (Choose two.)
- AFortiGate uses the AD server as the collector agent.
- BFortiGate uses the SMB protocol to read the event viewer logs from the DCs.Most Voted
- CFortiGate does not support workstation check.Most Voted
- DFortiGate directs the collector agent to use a remote LDAP server.
Correct Answer:
AB
Reference:
https://kb.fortinet.com/kb/documentLink.do?externalID=FD47732
AB
Reference:
https://kb.fortinet.com/kb/documentLink.do?externalID=FD47732
send
light_mode
delete
Question #2
FortiGuard categories can be overridden and defined in different categories. To create a web rating override for example.com home page, the override must be configured using a specific syntax.
Which two syntaxes are correct to configure web rating override for the home page? (Choose two.)
Which two syntaxes are correct to configure web rating override for the home page? (Choose two.)
- Awww.exaple.comMost Voted
- Bwww.example.com/index.html
- Cexample.comMost Voted
- Dwww.example.com:443
Correct Answer:
AC
When using FortiGuard category filtering to allow or block access to a website, one option is to make a web rating override and define the website in a different category. Web ratings are only for host namesג€" "no URLs or wildcard characters are allowed".
AC
When using FortiGuard category filtering to allow or block access to a website, one option is to make a web rating override and define the website in a different category. Web ratings are only for host namesג€" "no URLs or wildcard characters are allowed".
send
light_mode
delete
Question #3
Refer to the exhibits to view the firewall policy (Exhibit A) and the antivirus profile (Exhibit B).
Exhibit A.

Exhibit B.

Which statement is correct if a user is unable to receive a block replacement message when downloading an infected file for the first time?
Exhibit A.

Exhibit B.

Which statement is correct if a user is unable to receive a block replacement message when downloading an infected file for the first time?
- AThe flow-based inspection is used, which resets the last packet to the user.Most Voted
- BThe volume of traffic being inspected is too high for this model of FortiGate.
- CThe firewall policy performs the full content inspection on the file.
- DThe intrusion prevention security profile needs to be enabled when using flow-based inspection mode.
Correct Answer:
A
A
send
light_mode
delete
Question #4
Which three options are the remote log storage options you can configure on FortiGate? (Choose three.)
- AFortiSandbox
- BFortiCloudMost Voted
- CFortiSIEMMost Voted
- DFortiCache
- EFortiAnalyzerMost Voted
Correct Answer:
BCE
Reference:
https://docs.fortinet.com/document/fortigate/6.0.0/handbook/265052/logging-and-reporting-overview
BCE
Reference:
https://docs.fortinet.com/document/fortigate/6.0.0/handbook/265052/logging-and-reporting-overview
send
light_mode
delete
Question #5
Which statement correctly describes NetAPI polling mode for the FSSO collector agent?
- ANetAPI polling can increase bandwidth usage in large networks.
- BThe NetSessionEnum function is used to track user logouts.Most Voted
- CThe collector agent must search security event logs.
- DThe collector agent uses a Windows API to query DCs for user logins.
Correct Answer:
A
Reference:
https://kb.fortinet.com/kb/microsites/search.do?
cmd=displayKC&docType=kc&externalId=FD34906&sliceId=1&docTypeID=DT_KCARTICLE_1_1&dialogID=210966035&stateId=1%200%20210968009%27
)
A
Reference:
https://kb.fortinet.com/kb/microsites/search.do?
cmd=displayKC&docType=kc&externalId=FD34906&sliceId=1&docTypeID=DT_KCARTICLE_1_1&dialogID=210966035&stateId=1%200%20210968009%27
)
send
light_mode
delete
All Pages