Fortinet NSE4_FGT-7.0 Exam Practice Questions (P. 5)
- Full Access (106 questions)
- One Year of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #21
Refer to the exhibit, which contains a session list output.

Based on the information shown in the exhibit, which statement is true?

Based on the information shown in the exhibit, which statement is true?
- AOne-to-one NAT IP pool is used in the firewall policy.Most Voted
- BDestination NAT is disabled in the firewall policy.
- CPort block allocation IP pool is used in the firewall policy.
- DOverload NAT IP pool is used in the firewall policy.
Correct Answer:
A
A
send
light_mode
delete
Question #22
Which two statements are correct about SLA targets? (Choose two.)
- AYou can configure only two SLA targets per one Performance SLA.
- BSLA targets are optional.Most Voted
- CSLA targets are required for SD-WAN rules with a Best Quality strategy.
- DSLA targets are used only when referenced by an SD-WAN rule.Most Voted
Correct Answer:
BD
Reference:
https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/382233/performance-sla-sla-targets
BD
Reference:
https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/382233/performance-sla-sla-targets
send
light_mode
delete
Question #23
Refer to the exhibit, which contains a session diagnostic output.

Which statement is true about the session diagnostic output?

Which statement is true about the session diagnostic output?
- AThe session is in SYN_SENT state.Most Voted
- BThe session is in FIN_WAIT state.
- CThe session is in ESTABLISHED state.
- DThe session is in FIN_ACK state.
Correct Answer:
A
Reference:
https://kb.fortinet.com/kb/viewContent.do?externalId=FD30042
A
Reference:
https://kb.fortinet.com/kb/viewContent.do?externalId=FD30042
send
light_mode
delete
Question #24
Which statement is correct regarding the inspection of some of the services available by web applications embedded in third-party websites?
- AThe security actions applied on the web applications will also be explicitly applied on the third-party websites.
- BThe application signature database inspects traffic only from the original web application server.
- CFortiGuard maintains only one signature of each web application that is unique.
- DFortiGate can inspect sub-application traffic regardless where it was originated.Most Voted
Correct Answer:
D
Reference:
https://help.fortinet.com/fortiproxy/11/Content/Admin%20Guides/FPX-AdminGuide/300_System/303d_FortiGuard.htm
D
Reference:
https://help.fortinet.com/fortiproxy/11/Content/Admin%20Guides/FPX-AdminGuide/300_System/303d_FortiGuard.htm
send
light_mode
delete
Question #25
Which engine handles application control traffic on the next-generation firewall (NGFW) FortiGate?
- AIntrusion prevention system engineMost Voted
- BDetection engine
- CFlow engine
- DAntivirus engine
Correct Answer:
A
Reference:
http://docs.fortinet.com/document/fortigate/6.0.0/handbook/240599/application-control
A
Reference:
http://docs.fortinet.com/document/fortigate/6.0.0/handbook/240599/application-control
send
light_mode
delete
All Pages
