Certbus > Fortinet > Fortinet Certification > FCNSA.V5 > FCNSA.V5 Online Practice Questions and Answers

FCNSA.V5 Online Practice Questions and Answers

Questions 4

How is traffic routed onto an SSL VPN tunnel from the FortiGate unit side?

A. A static route must be configured by the administrator using the ssl.root interface as the outgoing interface.

B. Assignment of an IP address to the client causes a host route to be added to the FortiGate unit's kernel routing table.

C. A route back to the SSLVPN IP pool is automatically created on the FortiGate unit.

D. The FortiGate unit adds a route based upon the destination address in the SSL VPN firewall policy.

Browse 119 Q&As
Questions 5

Which of the following pieces of information can be included in the Destination Address field of a firewall policy? (Select all that apply.)

A. An IP address pool.

B. A virtual IP address.

C. An actual IP address or an IP address group.

D. An FQDN or Geographic value(s).

Browse 119 Q&As
Questions 6

Which of the following logging options are supported on a FortiGate unit? (Select all that apply.)

A. LDAP

B. Syslog

C. FortiAnalyzer

D. Local disk and/or memory

Browse 119 Q&As
Questions 7

When browsing to an internal web server using a web-mode SSL VPN bookmark, from which of the following source IP addresses would the web server consider the HTTP request to be initiated?

A. The remote user's virtual IP address.

B. The FortiGate unit's internal IP address.

C. The remote user's public IP address.

D. The FortiGate unit's external IP address.

Browse 119 Q&As
Questions 8

Which of the following are valid authentication user group types on a FortiGate unit? (Select all that apply.)

A. Firewall

B. Directory Service

C. Local

D. LDAP

E. PKI

Browse 119 Q&As
Questions 9

Which of the following statements correctly describes how a FortiGate unit functions in Trans- parent mode?

A. To manage the FortiGate unit, one of the interfaces must be designated as the management in-terface. This interface may not be used for forwarding data.

B. An IP address is used to manage the FortiGate unit but this IP address is not associated with a specific interface.

C. The FortiGate unit must use public IP addresses on the internal and external networks.

D. The FortiGate unit uses private IP addresses on the internal network but hides them using ad- dress translation.

Browse 119 Q&As
Questions 10

A FortiGate unit can act as which of the following? (Select all that apply.)

A. Antispam filter

B. Firewall

C. VPN gateway

D. Mail relay

E. Mail server

Browse 119 Q&As
Questions 11

Which of the following products can be installed on a computer running Windows XP to provide personal firewall protection, antivirus protection, web and mail filtering, spam filtering, and VPN functionality?

A. FortiGate

B. FortiAnalyzer

C. FortiClient

D. FortiManager

E. FortiReporter

Browse 119 Q&As
Exam Code: FCNSA.V5
Exam Name: Fortinet Certified Network Security Administrator (FCNSA.v5)
Last Update:
Questions: 119 Q&As

PDF

$45.99

VCE

$49.99

PDF + VCE

$59.99