Examine this FortiGate configuration:

How does the FortiGate handle web proxy traffic coming from the IP address 10.2.1.200 that requires authorization?
A. It drops the traffic.
B. It authenticates the traffic using the authentication scheme SCHEME1.
C. It authenticates the traffic using the authentication scheme SCHEME2.
D. It always authorizes the traffic without requiring authentication.
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
What are two benefits of flow-based inspection compared to proxy-based inspection? (Choose two.)
A. FortiGate uses fewer resources.
B. FortiGate allocates two sessions per connection.
C. FortiGate adds less latency to traffic.
D. FortiGate performs a more exhaustive inspection on traffic.
正解:A,C
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
Refer to the exhibit.

Which contains a session list output. Based on the information shown in the exhibit, which statement is true?
A. Destination NAT is disabled in the firewall policy.
B. One-to-one NAT IP pool is used in the firewall policy.
C. Port block allocation IP pool is used in the firewall policy.
D. Overload NAT IP pool is used in the firewall policy.
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
An organization requires remote users to send external application data running on their PCs and access FTP resources through an SSL/TLS connection.
Which FortiGate configuration can achieve this goal?
A. SSL VPN quick connection
B. SSL VPN bookmark
C. SSL VPN tunnel
D. Zero trust network access
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
Refer to the exhibit, which contains a session diagnostic output.

Which statement is true about the session diagnostic output?
A. The session is a UDP unidirectional state.
B. The session is a bidirectional TCP connection.
C. The session is in TCP ESTABLISHED state.
D. The session is a bidirectional UDP connection.
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
Which three statements are true regarding session-based authentication? (Choose three.)
A. It is not recommended if multiple users are behind the source NAT
B. HTTP sessions are treated as a single user.
C. It requires more resources.
D. IP sessions from the same source IP address are treated as a single user.
E. It can differentiate among multiple clients behind the same source IP address.
正解:B,C,E
質問 7:
Refer to the exhibits.
The exhibits show the firewall policies and the objects used in the firewall policies.
The administrator is using the Policy Lookup feature and has entered the search criteria shown in the exhibit.

Which policy will be highlighted, based on the input criteria?
A. Policy with ID 4.
B. Policy with ID 5.
C. Policy with ID 4.
D. Policies with ID 2 and 3.
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 8:
Which statement about the deployment of the Security Fabric in a multi-VDOM environment is true?
A. Downstream devices can connect to the upstream device from any of their VDOMs.
B. Each VDOM in the environment can be part of a different Security Fabric.
C. Security rating reports can be run individually for each configured VDOM.
D. VDOMs without ports with connected devices are not displayed in the topology.
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
横山** -
NSE4_FGT-7.2問題集は図表が多く、説明も丁寧で読み込むことにより合格に必要な知識を得ることができます。