What is the benefit of using FortiGate NAC LAN Segments?

What is the benefit of using FortiGate NAC LAN Segments?A . It provides support for multiple DHCP servers within the same VLAN.B . It provides physical isolation without changing the IP address of hosts.C . It provides support for IGMP snooping between hosts within the same VLAND . It allows...

February 21, 2025 No Comments READ MORE +

Given the information shown in the output, which two statements are true?

You are running a diagnose command continuously as traffic flows through a platform with NP6 and you obtain the following output: Given the information shown in the output, which two statements are true? (Choose two.)A . Enabling bandwidth control between the ISF and the NP will change the outputB ....

February 19, 2025 No Comments READ MORE +

Which two statements correctly describe the expected behavior when running this template?

Refer to the exhibit. FortiManager is configured with the Jinja Script under CLI Templates shown in the exhibit. Which two statements correctly describe the expected behavior when running this template? (Choose two.)A . The Jinja template will automatically map the interface with "WAN" role on the managed FortiGate.B . The...

February 17, 2025 No Comments READ MORE +

Which feature must you enable on the BGP neighbors to accomplish this goal?

Which feature must you enable on the BGP neighbors to accomplish this goal?A . Graceful-restartB . Deterministic-medC . SynchronizationD . Soft-reconfigurationView AnswerAnswer: A Explanation: Graceful-restart is a feature that allows BGP neighbors to maintain their routing information during a BGP restart or failover event, without disrupting traffic forwarding or causing...

February 3, 2025 No Comments READ MORE +

What should you configure?

SD-WAN is configured on a FortiGate. You notice that when one of the internet links has high latency the time to resolve names using DNS from FortiGate is very high. You must ensure that the FortiGate DNS resolution times are as low as possible with the least amount of work....

February 2, 2025 No Comments READ MORE +

A customer is trying to set up a VPN with a FortiGate, but they do not have a backup of the configuration. Output during a troubleshooting session is shown in the exhibits A and B and a baseline VPN configuration is shown in Exhibit C Referring to the exhibits, which configuration will restore VPN connectivity?

Refer to the exhibits. Exhibit A Exhibit B Exhibit C A customer is trying to set up a VPN with a FortiGate, but they do not have a backup of the configuration. Output during a troubleshooting session is shown in the exhibits A and B and a baseline VPN configuration...

January 29, 2025 No Comments READ MORE +

Which adapter type for the NICs will you recommend?

You are responsible for recommending an adapter type for NICs on a FortiGate VM that will run on an ESXi Hypervisor. Your recommendation must consider performance as the main concern, cost is not a factor. Which adapter type for the NICs will you recommend?A . Native ESXi Networking with E1000B...

January 27, 2025 No Comments READ MORE +

What are two possible reasons for this problem?

You are troubleshooting a FortiMail Cloud service integrated with Office 365 where outgoing emails are not reaching the recipients' mail. What are two possible reasons for this problem? (Choose two.) A. The FortiMail access control rule to relay from Office 365 servers FQDN is missing. B. The FortiMail DKIM key...

January 21, 2025 No Comments READ MORE +

Which SYN flood mitigation mode must the customer use?

A customer wants to enable SYN flood mitigation in a FortiDDoS device. The FortiDDoS must reply with one SYN/ACK packet per SYN packet from a new source IP address. Which SYN flood mitigation mode must the customer use?A . SYN retransmission B. SYN/ACK cookie C. SYN cookie D. ACK cookieView...

May 6, 2023 No Comments READ MORE +

In this scenario, which application delivery control is configured in the FortiADC?

Refer to the exhibit. As shown in the exhibit, a FortiADC is load-balancing IPv4 traffic between two next-hop routers. The FortiADC does not know the IP addresses of the servers. Also, the FortiADC is doing Layer 7 content inspection and modification. In this scenario, which application delivery control is configured...

May 6, 2023 No Comments READ MORE +