Summer Sale- Special Discount Limited Time 65% Offer - Ends in 0d 00h 00m 00s - Coupon code: netdisc

Fortinet EMEA-Advanced-Support Fortinet EMEA Advanced Support Exam Exam Practice Test

Page: 1 / 5
Total 50 questions

Fortinet EMEA Advanced Support Exam Questions and Answers

Question 1

Which FortiGate feature allows inspection of encrypted SSL/TLS traffic?

Options:

A.

Deep Packet Inspection

B.

SSL Inspection

C.

Application Control

D.

Web Filtering

Question 2

Which term refers to the OSPF router that connects area 0 to a nonbackbone area?

Options:

A.

area boundary router

B.

area border router

C.

autonomous system boundary router

D.

backbone router

Question 3

In Active FTP who sends the PORT command?

Options:

A.

The FTP Client

B.

The FTP Server

C.

Both

D.

There is no PORT command in Active FTP

Question 4

Which of the following protocols operates at Layer 4

Options:

A.

IPSEC

B.

BGP

C.

OSPF

D.

ARP

Question 5

Link aggregation allows network devices to________

Options:

A.

Increase bandwidth of an interface

B.

Increase bandwidth by binding physical interfaces into a single channel

C.

Restrict the bandwidth

D.

None of the above

Question 6

Which of the following protocols would you expect a typical switch to support?

Options:

A.

OSPF

B.

SIP

C.

STP

D.

VLAN

Question 7

In FortiGate, what is the purpose of a Virtual IP (VIP)?

Options:

A.

To map an external IP to an internal IP for NAT

B.

To create a virtual interface for VLANs

C.

To assign a secondary IP to a physical interface

D.

To enable load balancing for VPN tunnels

Question 8

Which of the following are classful addresses? (Select all that apply below)

Options:

A.

10.225.30.0/8

B.

10.225.30.0/16

C.

172.16.0.0/16

D.

172.16.0.0/24

Question 9

What does the FortiGate ‘set nat enable’ command do in a firewall policy?

Options:

A.

Enables NAT for outgoing traffic

B.

Disables NAT for the policy

C.

Forces NAT to use a specific IP pool

D.

Enables NAT for incoming traffic only

Question 10

Client is connected to firewall via link with MTU 1500 bytes, server is connected to firewall via link with MTU 1496 bytes. The firewall is rewriting both sender and receiver tcp-mss to 1450 bytes. What maximum size of IP packets are we going to see when client connects to server?

Options:

A.

1500 bytes

B.

1496 bytes

C.

1500 bits

D.

1496 bits

E.

1450 bytes

F.

1450 bits

Question 11

What happens when a FortiGate detects a SYN flood attack?

Options:

A.

It drops all incoming packets

B.

It enables proxy-based inspection

C.

It applies rate limiting to SYN packets

D.

It redirects traffic to a backup gateway

Question 12

What are source and destination MAC addresses of an ARP request?

Options:

A.

The source MAC is that of the sending device and the destination MAC is a broadcast address

B.

The source MAC is that of the forwarding switch and destination of the targeted device

C.

The source MAC is that of the sending device and the destination of the targeted device

D.

The source MAC is that of the sending device and the destination is a multicast address

Question 13

Which command would you use to verify the status of an IPsec VPN tunnel on a FortiGate?

Options:

A.

diagnose vpn tunnel list

B.

get vpn ipsec status

C.

diagnose ipsec status

D.

show crypto ipsec sa

Question 14

Which protocol does FortiGate use for secure management access by default?

Options:

A.

Telnet

B.

SSH

C.

HTTP

D.

SNMP

Question 15

In VMware vSphere, the term VMotion refers to

Options:

A.

The streaming of high definition video on a virtual machine

B.

A zero downtime live migration of workloads from one server to another

C.

The patented technology available to migrate a server from Hyper-V to VMware

D.

The process used to describe the movement of hard drive platters on a virtual machine

Page: 1 / 5
Total 50 questions