Leads4pass > Fortinet > Security Expert > NSE4 > NSE4 Online Practice Questions and Answers

NSE4 Online Practice Questions and Answers

Questions 4

Which operating system vulnerability can you protect when selecting signatures to include in an IPS sensor? (choose three)

A. Irix

B. QNIX

C. Linux

D. Mac OS

E. BSD

Buy Now
Questions 5

Which of the following actions can be used with the FortiGuard quota feature? (Choose three.)

A. Allow

B. Block

C. Monitor

D. Warning

E. Authenticate

Buy Now
Questions 6

Which of the following Fortinet products can receive updates from the FortiGuard Distribution Network?

A. FortiGate

B. FortiClient

C. FortiMail

D. FortiAnalyzer

Buy Now
Questions 7

Which action does the FortiGate take when link health monitor times out?

A. All routes to the destination subnet configured in the link health monitor are removed from the routing table.

B. The distance values of all routes using interface configured in the link health monitor are increased.

C. The priority values of all routes using configured in the link health monitor are increased.

D. All routes using the next-hop gateway configured in the link health monitor are removed from the routing table.

Buy Now
Questions 8

Which does FortiToken use as input when generating a token code? (Choose two.)

A. User password

B. Time

C. User name

D. Seed

Buy Now
Questions 9

To which remote device can the FortiGate send logs? (Choose three.)

A. Syslog

B. FortiAnalyzer

C. Hard drive

D. Memory

E. FortiCloud

Buy Now
Questions 10

Which statement describes what the CLI command diagnose debug authd fsso list is used for?

A. Monitors communications between the FSSO collector agent and FortiGate unit.

B. Displays which users are currently logged on using FSSO.

C. Displays are listing of all connected FSSO collector agents.

D. Lists all DC Agents installed on all domain controllers.

Buy Now
Questions 11

Which of the following items is NOT a packet characteristic matched by a firewall service object?

A. ICMP type and code

B. TCP/UDP source and destination ports

C. IP protocol number

D. TCP sequence number

Buy Now
Questions 12

Which of the following FSSO agents are required for a DC agent mode solution? (Choose two.)

A. FSSO agent

B. DC agent

C. Collector agent

D. Radius server

Buy Now
Questions 13

Which of the following statements are correct concerning the IPsec phase 1 and phase 2, shown in the exhibit? (choose two)

A. The quick mode selector in the remote site must also be 0.0.0.0/0 for the source and destination addresses.

B. Only remote peers with the peer ID 'fortinet' will be able to establish a VPN.

C. The FortiGate device will automatically add a static route to the source quick mode selector address received from each remote VPN peer.

D. The configuration will work only to establish FortiClient-to-FortiGate tunnels. A FortiGate tunnel requires a different configuration.

Buy Now
Exam Code: NSE4
Exam Name: Fortinet Network Security Expert 4 Written Exam (400)
Last Update: Apr 21, 2024
Questions: 301
10%OFF Coupon Code: SAVE10

PDF (Q&A)

$49.99

VCE

$55.99

PDF + VCE

$65.99