Which operating system vulnerability can you protect when selecting signatures to include in an IPS sensor? (choose three)
A. Irix
B. QNIX
C. Linux
D. Mac OS
E. BSD
Which of the following actions can be used with the FortiGuard quota feature? (Choose three.)
A. Allow
B. Block
C. Monitor
D. Warning
E. Authenticate
Which of the following Fortinet products can receive updates from the FortiGuard Distribution Network?
A. FortiGate
B. FortiClient
C. FortiMail
D. FortiAnalyzer
Which action does the FortiGate take when link health monitor times out?
A. All routes to the destination subnet configured in the link health monitor are removed from the routing table.
B. The distance values of all routes using interface configured in the link health monitor are increased.
C. The priority values of all routes using configured in the link health monitor are increased.
D. All routes using the next-hop gateway configured in the link health monitor are removed from the routing table.
Which does FortiToken use as input when generating a token code? (Choose two.)
A. User password
B. Time
C. User name
D. Seed
To which remote device can the FortiGate send logs? (Choose three.)
A. Syslog
B. FortiAnalyzer
C. Hard drive
D. Memory
E. FortiCloud
Which statement describes what the CLI command diagnose debug authd fsso list is used for?
A. Monitors communications between the FSSO collector agent and FortiGate unit.
B. Displays which users are currently logged on using FSSO.
C. Displays are listing of all connected FSSO collector agents.
D. Lists all DC Agents installed on all domain controllers.
Which of the following items is NOT a packet characteristic matched by a firewall service object?
A. ICMP type and code
B. TCP/UDP source and destination ports
C. IP protocol number
D. TCP sequence number
Which of the following FSSO agents are required for a DC agent mode solution? (Choose two.)
A. FSSO agent
B. DC agent
C. Collector agent
D. Radius server
Which of the following statements are correct concerning the IPsec phase 1 and phase 2, shown in the exhibit? (choose two)
A. The quick mode selector in the remote site must also be 0.0.0.0/0 for the source and destination addresses.
B. Only remote peers with the peer ID 'fortinet' will be able to establish a VPN.
C. The FortiGate device will automatically add a static route to the source quick mode selector address received from each remote VPN peer.
D. The configuration will work only to establish FortiClient-to-FortiGate tunnels. A FortiGate tunnel requires a different configuration.