Weekend Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70percent

Fortinet EMEA-Advanced-Support Fortinet EMEA Advanced Support Exam Exam Practice Test

Fortinet EMEA Advanced Support Exam Questions and Answers

Question 1

Hybrid cloud means that

Options:

A.

The cloud provider uses AMD, Intel and possibly also other CPU vendors

B.

Some of the customer's systems are virtualized in the public cloud and some are in the local datacenter

C.

One customer uses VMs with multiple different operating systems in the same cloud account

D.

Cloud provider provides both 32-bit and 64-bit virtual machines

Question 2

Which parts of the IKE protocol below are responsible for authenticating the User (username/password) of a dialup IPsec tunnel? (Check all correct answers)

Options:

A.

IKEv1 phase2

B.

IKEv1 Xauth

C.

IKEv2 EAP

D.

IKEv1 phase1

E.

IKEv2 SA_INIT

Question 3

Which protocol is used by FortiGate to synchronize session tables in an HA cluster?

Options:

A.

FGCP

B.

VRRP

C.

OSPF

D.

BGP

Question 4

Which FortiGate feature allows for dynamic routing protocol updates to be propagated through an IPsec VPN tunnel?

Options:

A.

Auto Discovery VPN (ADVPN)

B.

Dynamic Routing Gateway

C.

Virtual Routing and Forwarding (VRF)

D.

Route-based VPN

Question 5

Which of the following is a network monitoring protocol?

Options:

A.

RDP

B.

Telnet

C.

SNMP

D.

SSH

Question 6

Which of the following protocols would you expect a typical switch to support?

Options:

A.

OSPF

B.

SIP

C.

STP

D.

VLAN

Question 7

Which FortiGate log type records denied traffic events?

Options:

A.

Traffic Log

B.

Security Log

C.

Event Log

D.

System Log

Question 8

Which protocols are used by an email client to retrieve emails?

Options:

A.

SMTP

B.

POP3

C.

IMAP4

D.

SNMP

Question 9

Which statement is true about IPsec VPNs and SSL VPNs?

Options:

A.

SSL VPN creates a HTTPS connection. IPsec does not

B.

Both SSL VPNs and IPsec VPNs are standard protocols

C.

Either a SSL VPN or an IPsec VPN can be established between an end-user workstation and a FortiGate device

D.

All of the above

Question 10

Which term refers to the OSPF router that connects area 0 to a nonbackbone area?

Options:

A.

area boundary router

B.

area border router

C.

autonomous system boundary router

D.

backbone router

Question 11

A firewall receives an out-of-order packet in a TCP session after the FIN/ACK and the packet is dropped as expected. What parameter can be changed to prevent such drops?

Options:

A.

TCP close-wait timer

B.

TCP time-wait timer

C.

Enable TCP option

D.

TCPMSS

Question 12

A Company is running an outdated version of a Webserver software that is vulnerable to multiple code execution and injection attacks. Which Security feature can protect the Webserver until the security patches are applied?

Options:

A.

Anti-virus Protection

B.

Intrusion Detection System

C.

Intrusion Prevention System

D.

Anti rootkit Protection

Question 13

What does the below route indicate?

Options:

A.

The destination network can be reached via any gates

B.

It is a dummy route in the routing table

C.

The destination network is locally connected on that interface

D.

The device does not know the destination

Question 14

Which FortiGate feature mitigates DDoS attacks by limiting the rate of incoming connections?

Options:

A.

DoS Policy

B.

IPS Signature

C.

Application Control

D.

Web Filtering

Question 15

What is the default FortiGate behavior when a packet matches no firewall policy?

Options:

A.

The packet is forwarded to the default gateway

B.

The packet is dropped

C.

The packet is sent to the IPS engine

D.

The packet is logged and allowed