Summer Limited Time 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: wrap60

Fortinet EMEA-Advanced-Support Dumps

Fortinet EMEA Advanced Support Exam Questions and Answers

Question 1

What does the FortiGate ‘set nat enable’ command do in a firewall policy?

Options:

A.

Enables NAT for outgoing traffic

B.

Disables NAT for the policy

C.

Forces NAT to use a specific IP pool

D.

Enables NAT for incoming traffic only

Question 2

What is the role of the FortiGate ‘set srcintf’ command in a firewall policy?

Options:

A.

Specifies the source interface for traffic matching

B.

Defines the destination interface for traffic

C.

Sets the source IP address range

D.

Configures the source NAT interface

Question 3

Which of the following are request methods in HTTP?

Options:

A.

GET

B.

LIST

C.

HEAD

D.

RETR

Question 4

Which parts of the IKE protocol below are responsible for authenticating the User (username/password) of a dialup IPsec tunnel? (Check all correct answers)

Options:

A.

IKEv1 phase2

B.

IKEv1 Xauth

C.

IKEv2 EAP

D.

IKEv1 phase1

E.

IKEv2 SA_INIT

Question 5

A firewall receives an out-of-order packet in a TCP session after the FIN/ACK and the packet is dropped as expected. What parameter can be changed to prevent such drops?

Options:

A.

TCP close-wait timer

B.

TCP time-wait timer

C.

Enable TCP option

D.

TCPMSS

Question 6

What is the default FortiGate behavior when a packet matches no firewall policy?

Options:

A.

The packet is forwarded to the default gateway

B.

The packet is dropped

C.

The packet is sent to the IPS engine

D.

The packet is logged and allowed

Question 7

Which FortiGate feature allows for dynamic routing protocol updates to be propagated through an IPsec VPN tunnel?

Options:

A.

Auto Discovery VPN (ADVPN)

B.

Dynamic Routing Gateway

C.

Virtual Routing and Forwarding (VRF)

D.

Route-based VPN

Question 8

Which of the following protocols operates at Layer 4

Options:

A.

IPSEC

B.

BGP

C.

OSPF

D.

ARP

Question 9

In FortiGate, what is the purpose of the ‘set webfilter-profile’ command in a firewall policy?

Options:

A.

Applies a web filtering profile to block or allow URLs

B.

Enables deep packet inspection for web traffic

C.

Configures the web proxy settings

D.

Sets the web server authentication profile

Question 10

Which statement is true about IPsec VPNs and SSL VPNs?

Options:

A.

SSL VPN creates a HTTPS connection. IPsec does not

B.

Both SSL VPNs and IPsec VPNs are standard protocols

C.

Either a SSL VPN or an IPsec VPN can be established between an end-user workstation and a FortiGate device

D.

All of the above

Question 11

What tool would you use to verify a certificate?

Options:

A.

Nessus

B.

OpenSSL

C.

Hping

D.

Certtester

Question 12

Which protocol is used by FortiGate to synchronize session tables in an HA cluster?

Options:

A.

FGCP

B.

VRRP

C.

OSPF

D.

BGP

Question 13

Which protocols are used by an email client to retrieve emails?

Options:

A.

SMTP

B.

POP3

C.

IMAP4

D.

SNMP

Question 14

In a FortiGate high availability (HA) cluster, what happens if the primary unit fails?

Options:

A.

The cluster is disabled, and traffic stops

B.

A secondary unit takes over as the primary unit

C.

The cluster switches to active-passive mode

D.

Traffic is rerouted through an external gateway

Question 15

What is the purpose of the FortiGate ‘diagnose debug flow’ command?

Options:

A.

To display real-time packet captures

B.

To troubleshoot routing table issues

C.

To show the packet flow through firewall policies

D.

To monitor system performance metrics

Page: 1 / 5
Total 50 questions