Free NSE4-FGT-60 Fortinet NSE4-FGT-60 Practice Test Question

Loading demo links...

Showing 1–3 of 13 questions

Question 1 (Topic 1)

An administrator needs to strengthen the security for SSL VPN access. Which of the following statements are best practices to do so? (Choose three.)

Select an option, then click Submit answer.

  • Configure split tunneling for content inspection.
  • Configure host restrictions by IP or MAC address.
  • Configure two-factor authentication using security certificates.
  • Configure SSL offloading to a content processor (FortiASIC).
  • Configure a client integrity check (host-check).
Question 2 (Topic 1)

An administrator wants to block HTTP uploads. Examine the exhibit, which contains the proxy address created for that purpose. Where must the proxy address be used?

Select an option, then click Submit answer.

  • As the source in a firewall policy.
  • As the source in a proxy policy.
  • As the destination in a firewall policy.
  • As the destination in a proxy policy.
Question 3 (Topic 1)

Which one of the following processes is involved in updating IPS from FortiGuard?

Select an option, then click Submit answer.

  • FortiGate IPS update requests are sent using UDP port 443.
  • Protocol decoder update requests are sent to service.fortiguard.net.
  • IPS signature update requests are sent to update.fortiguard.net.
  • IPS engine updates can only be obtained using push updates.