Question 6 of 30

Which two of the following are required for endpoint compliance monitors? (Choose two.)
Answer

Suggested Answer

The suggested answer is C, D.

For endpoint compliance monitors, a Persistent Agent is required to ensure continuous monitoring and enforcement of compliance policies. Additionally, a Custom Scan is needed to scan endpoints for vulnerabilities ensuring that the compliance policies are enforced.

Community Votes7 votes
CDSuggested
86%
BD
14%
Question 7 of 30

By default, if more than 20 hosts are seen connected on a single port simultaneously, what will happen to the port?
Answer

Suggested Answer

The suggested answer is D.

If more than 20 hosts are seen connected on a single port simultaneously, the port becomes a threshold uplink. This means the system dynamically identifies it as an uplink port because it has exceeded the predefined threshold for the number of hosts.

Community Votes5 votes
DSuggested
100%
Question 8 of 30

In a wireless integration, how does FortiNAC obtain connecting MAC address information?
Answer

Suggested Answer

The suggested answer is C.

FortiNAC obtains connecting MAC address information through MAC notification traps. MAC notification traps send host information when a host connects or disconnects, which eliminates the need for FortiNAC to perform active polling. This method is preferred for learning Layer 2 information efficiently.

Community Votes1 vote
DMost voted
100%
Question 9 of 30

Which system group will force at-risk hosts into the quarantine network, based on point of connection?
Answer

Suggested Answer

The suggested answer is A.

The correct system group that will force at-risk hosts into the quarantine network, based on point of connection, is 'Forced Quarantine'. This is because quarantine procedures are specifically designed to isolate at-risk or compromised systems from the rest of the network in order to prevent the spread of potential threats. Forced Remediation and Forced Isolation are related to corrective measures and containment, but they do not specifically imply moving the host into a quarantine network.

Community Votes6 votes
BMost voted
67%
ASuggested
33%
Question 10 of 30

During the on-boarding process through the captive portal, why would a host that successfully registered remain stuck in the Registration VLAN? (Choose two.)
Answer

Suggested Answer

The suggested answer is A, C.

If a host remains stuck in the Registration VLAN during the on-boarding process, two possible reasons are: the wrong agent installed on the host or another unregistered host present on the same port. The wrong agent might not allow proper communication with the system, preventing the host from being properly registered and moved out of the Registration VLAN. Additionally, if there is another unregistered host on the same port, it could cause network conflicts that prevent the registered host from transitioning to the appropriate VLAN.

Community Votes1 vote
CDMost voted
100%