Which of the following items represent the minimum configuration steps an administrator must perform to enable Data Leak Prevention for traffic flowing through the FortiGate unit? (Select all that apply.)
A. Define a DLP sensor.
B. Assign a DLP sensor in a firewall policy.
C. Define one or more DLP rules.
D. Apply a DLP sensor to a DoS sensor policy.
E. Apply one or more DLP rules to a firewall policy.
F. Enable DLP globally using the config sys dlp command in the CLI.
正解:A,B,C
質問 2:
SSL content inspection is enabled on the FortiGate unit. Which of the following steps is required to prevent a user from being presented with a web browser warning when accessing an SSL-encrypted website?
A. Enable transparent proxy mode on the FortiGate unit.
B. The root certificate of the FortiGate SSL proxy must be imported into the local certificate store on the user's workstation.
C. Enable NTLM authentication on the FortiGate unit. NTLM authentication suppresses the certificate warning messages in the web browser.
D. Disable the strict server certificate check in the web browser under Internet Options.
正解:B
質問 3:
Which of the following components are contained in all FortiGate units from the FG50 models and up? (Select all that apply.)
A. FortiASIC content processor.
B. Hard Drive.
C. Gigabit network interfaces.
D. Serial console port.
正解:A,D
質問 4:
Which of the following spam filtering methods are supported on the FortiGate unit? (Select all that apply.)
A. IP address check.
B. Black/White list.
C. Return email DNS check.
D. Open Relay Database List (ORDBL).
E. Email checksum check.
正解:A,B,C,D,E
質問 5:
Which of the following statements correctly describes how a push update from the FortiGuard Distribution Network (FDN) works?
A. The FDN continues to send push updates until the FortiGate unit sends an acknowledgement.
B. The FDN sends push updates only once.
C. The FDN sends a message to the FortiGate unit that there is an update available and that the FortiGate unit should download the update.
D. The FDN sends package updates automatically to the FortiGate unit without requiring an update request.
正解:C
質問 6:
A FortiGate unit can scan for viruses on which types of network traffic? (Select all that apply.)
A. SMTP
B. POP3
C. SNMP
D. FTP
E. NetBios
正解:A,B,D
質問 7:
Which of the following statements describes the method of creating a policy to block access to an FTP site?
A. Create a firewall policy with destination address set to the IP address of the FTP site, the Service set to FTP, and the Action set to Deny.
B. Enable Web Filter URL blocking and add the URL of the FTP site to the URL Block list.
C. None of the above.
D. Create a firewall policy with a protection profile containing the Block FTP option enabled.
正解:A
質問 8:
Which statement is correct regarding virus scanning on a FortiGate unit?
A. Enabling virus scanning in a protection profile enables virus scanning for all traffic flowing through the FortiGate.
B. Fortinet Customer Support enables virus scanning remotely for you.
C. Virus scanning must be enabled in a protection profile and the protection profile must be assigned to a firewall policy.
D. Virus scanning is enabled by default.
正解:C
1368 お客様のコメント
クリック」





Nishihata -
FCNSA初心者ですが、この問題集ひとつで充分足りるんじゃないかと思ってます。