Which statements about bulk configuration changes using FortiManager CLI scripts are correct? (Choose two.)
A. When executed on the Remote FortiGate directly, administrators do not have the option to review the changes prior to installation.
B. When executed on the Device Database, you must use the installation wizard to apply the changes to the managed FortiGate.
C. When executed on the Policy Package, ADOM database, changes are applied directly to the managed FortiGate.
D. When executed on the All FortiGate in ADOM, changes are automatically installed without creating a new revision history.
正解:A,C
質問 2:
In which of the following states is a given session categorized as ephemeral? (Choose two.)
A. A UDP session with only one packet received.
B. A UDP session with packets sent and received.
C. A TCP session waiting to complete the three-way handshake.
D. A TCP session waiting for FIN ACK.
正解:B,D
質問 3:
View the exhibit, which contains the output of a debug command, and then answer the question below.

Which of the following statements about the exhibit are true? (Choose two.)
A. The local FortiGate has been elected as the OSPF backup designated router.
B. In the network on port4, two OSPF routers are down.
C. The local FortiGate's OSPF router ID is 0.0.0.4
D. Port4 is connected to the OSPF backbone area.
正解:C,D
質問 4:
A FortiGate device has the following LDAP configuration:

The administrator executed the 'dsquery' command in the Windows LDAp server 10.0.1.10, and got the following output:
>dsquery user -samid administrator
"CN=Administrator, CN=Users, DC=trainingAD, DC=training, DC=lab"
Based on the output, what FortiGate LDAP setting is configured incorrectly?
A. username.
B. dn.
C. password.
D. cnid.
正解:D
質問 5:
Which the following events can trigger the election of a new primary unit in a HA cluster? (Choose two.)
A. A secondary unit is removed from the HA cluster.
B. Primary unit stops sending HA heartbeat
C. One of the monitored interfaces in the primary unit is disconnected.
D. The FortiGuard license for the primary unit is updated.
正解:B,D
質問 6:
An LDAP user cannot authenticate against a FortiGate device. Examine the real time debug output shown in the exhibit when the user attempted the authentication; then answer the question below.


Based on the output in the exhibit, what can cause this authentication problem?
A. User student is not found in the LDAP server.
B. User student is using a wrong password.
C. The FortiGate has been configured with the wrong password for the LDAP administrator.
D. The FortiGate has been configured with the wrong authentication schema.
正解:A
質問 7:
Which of the following statements are true about FortiManager when it is deployed as a local FDS? (Choose two.)
A. Supports rating requests from both managed and unmanaged devices.
B. Can be configured as an update server, or a rating server, but not both.
C. Provides VM license validation services.
D. Caches available firmware updates for unmanaged devices.
正解:C,D
質問 8:
Examine the output from the BGP real time debug shown in the exhibit, then the answer the question below:

Which statements are true regarding the output in the exhibit? (Choose two.)
A. BGP peers have successfully interchanged Open and Keepalive messages.
B. Local BGP peer received a prefix for a default route.
C. The state of the remote BGP peer is OpenConfirm.
D. The state of the remote BGP peer will go to Connect after it confirms the received prefixes.
正解:A,B