Question 6 of 106

Refer to the exhibit.

An administrator is running a sniffer command as shown in the exhibit.

Which three pieces of information are included in the sniffer output? (Choose three.)

    Correct Answer: ABD

    The sniffer output in the exhibit includes the interface name (indicating which interface the packet came from or is going to), the IP header (providing details such as source and destination IP addresses), and the packet payload (displaying the actual data transmitted in the packet). The Ethernet header is not shown here. Therefore, the correct pieces of information included in the sniffer output are the interface name, IP header, and packet payload.

Question 7 of 106

Refer to the exhibits.

Exhibit A.

Exhibit B.

The exhibit contains the configuration for an SD-WAN Performance SLA, as well as the output of diagnose sys virtual-wan-link health-check.

Which interface will be selected as an outgoing interface?

    Correct Answer: D

    According to the provided configuration and output, the 'Best Quality' strategy is selected with 'latency' as the quality criteria. The interface with the lowest latency will be chosen. Based on the health check output, port1 has the lowest latency of 21.566 ms. Therefore, the interface that will be selected is port1.

Question 8 of 106

An administrator does not want to report the logon events of service accounts to FortiGate.

What setting on the collector agent is required to achieve this?

    Correct Answer: A

    To prevent the logon events of service accounts from being reported to FortiGate, the administrator needs to add user accounts to the Ignore User List on the collector agent. The FSSO collector agent can be configured to ignore logon events that match entries in the Ignore User List, ensuring that these events are neither recorded nor reported.

Question 9 of 106

Refer to the exhibit.

The global settings on a FortiGate device must be changed to align with company security policies.

What does the Administrator account need to access the FortiGate global settings?

    Correct Answer: B

    To access the FortiGate global settings, the Administrator account must change the Administrator profile. The current profile 'prof_admin' provides full access only to its virtual domain and not to the global settings of the FortiGate. Changing the Administrator profile to 'super_admin' would grant full access to all settings, including the global settings. Simply enabling two-factor authentication, changing the password, or enabling restricted access to trusted hosts will not provide access to the global settings.

Question 10 of 106

Which two statements are true about the Security Fabric rating? (Choose two.)

    Correct Answer: BC

    The Security Fabric rating is crucial for maintaining the optimal security posture and performance of a network. Many of the security issues highlighted by the rating can be quickly addressed by applying recommended actions directly from the interface. Additionally, it is important to note that the Security Fabric rating must be run on the root FortiGate device within the Security Fabric, as it consolidates and evaluates the security status of the entire network from that central point. These features make B and C the correct answers.