Fortinet NSE8_812 Exam Practice Questions (P. 4)
- Full Access (117 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #16
Refer to the exhibit, which shows a Branch1 configuration and routing table.

In the SD-WAN implicit rule, you do not want the traffic load balance for the overlay interface when all members are available.
In this scenario, which configuration change will meet this requirement?

In the SD-WAN implicit rule, you do not want the traffic load balance for the overlay interface when all members are available.
In this scenario, which configuration change will meet this requirement?
- AChange the load-balance-mode to source-ip-based.
- BCreate a new static route with the internet sdwan-zone only.
- CConfigure the cost in each overlay member to 10.
- DConfigure the priority in each overlay member to 10.Most Voted
Correct Answer:
D
D
send
light_mode
delete
Question #17
Refer to the exhibits.
GUI Access -

Configuration -

Topology -

An administrator has configured a FortiGate and FortiAuthenticator for two-factor authentication with FortiToken push notifications for their SSL VPN login. Upon initial review of the setup, the administrator has discovered that the customers can manually type in their two-factor code and authenticate but push notifications.
Based on the information given in the exhibits, what must be done to fix this?
GUI Access -

Configuration -

Topology -

An administrator has configured a FortiGate and FortiAuthenticator for two-factor authentication with FortiToken push notifications for their SSL VPN login. Upon initial review of the setup, the administrator has discovered that the customers can manually type in their two-factor code and authenticate but push notifications.
Based on the information given in the exhibits, what must be done to fix this?
- AOn FG-1 port1, the ftm access protocol must be enabled.
- BFAC-1 must have an internet routable IP address for push notifications.
- COn FG-1 CLI, the ftm-push server setting must point to 100.64.1.41.
- DOn FAC-1, the FortiToken public IP setting must point to 100.64.1.41.Most Voted
Correct Answer:
D
D
send
light_mode
delete
Question #18
Refer to the exhibit.

A customer has deployed a FortiGate 300E with virtual domains (VDOMs) enabled in the multi-VDOM mode. There are three VDOMs: Root is for management and internet access, while VDOM 1 and VDOM 2 are used for segregating internal traffic. AccountVInk and SalesVInk are standard VDOM links in Ethernet mode.
Given the exhibit, which two statements below about VDOM behavior are correct? (Choose two.)

A customer has deployed a FortiGate 300E with virtual domains (VDOMs) enabled in the multi-VDOM mode. There are three VDOMs: Root is for management and internet access, while VDOM 1 and VDOM 2 are used for segregating internal traffic. AccountVInk and SalesVInk are standard VDOM links in Ethernet mode.
Given the exhibit, which two statements below about VDOM behavior are correct? (Choose two.)
- AYou can apply OSPF routing on the VDOM link in either PPP or Ethernet modeMost Voted
- BTraffic on AccountVInk and SalesVInk will not be accelerated
- CThe VDOM links are in Ethernet mode because they have IP addressed assigned on both sides
- DRoot VDOM is an Admin type VDOM, while VDOM 1 and VDOM 2 are Traffic type VDOMs
- EOSPF routing can be configured between VDOM 1 and Root VDOM without any configuration changes to AccountVInk
Correct Answer:
C
C
send
light_mode
delete
Question #19
You are responsible for recommending an adapter type for NICs on a FortiGate VM that will run on an ESXi Hypervisor.
Your recommendation must consider performance as the main concern, cost is not a factor.
Which adapter type for the NICs will you recommend?
Your recommendation must consider performance as the main concern, cost is not a factor.
Which adapter type for the NICs will you recommend?
- ANative ESXi Networking with E1000
- BVirtual Function (VF) PCI Passthrough
- CNative ESXi Networking with VMXNET3
- DPhysical Function (PF) PCI PassthroughMost Voted
Correct Answer:
C
C
send
light_mode
delete
Question #20
You are deploying a FortiExtender (FEX) on a ForiGate-60F. The FEX will be managed by the FortiGate. You anticipate high utilization. The requirement is to minimize the overhead on the device for WAN traffic.
Which action achieves the requirement in this scenario?
Which action achieves the requirement in this scenario?
- AAdd a switch between the FortiGate and FEX.
- BEnable CAPWAP connectivity between the FortiGate and the FortiExtender
- CChange connectivity between the FortiGate and the FortiExtender to use VLAN ModeMost Voted
- DAdd a VLAN under the FEX-WAN interface on the FortiGate
Correct Answer:
C
C
send
light_mode
delete
All Pages
