nse4_fgt-72 Exam QuestionsBrowse all questions from this exam

nse4_fgt-72 Exam - Question 59


Which two types of traffic are managed only by the management VDOM? (Choose two.)

Show Answer
Correct Answer: AB

The two types of traffic managed only by the management VDOM are DNS and FortiGuard web filter queries. Management VDOM is responsible for handling system communications and queries essential for the management and operation of the FortiGate device. DNS queries are required to resolve domain names for the device’s operational purposes, and FortiGuard web filter queries are used to check the status and updates for web filtering functionality. Both these types of traffic are crucial for device management and functionality and are, therefore, handled solely by the management VDOM.

Discussion

5 comments
Sign in to comment
BoostBorisOptions: AB
Feb 13, 2023

C is wrong because PKI stands for Public Key Infrastructure and is associated with VPNS D is wrong because traffic shaping is configured on a 'Traffic Shaping Policy' A is correct because Fortigate will use Fortiguard for these queries B is correct as the management VDOM can use DNS for DNS queries

Brandon534Options: AB
Jul 5, 2023

Infrastructure study guide page 73

raydel92Options: AB
Sep 13, 2023

A. DNS B. FortiGuard web filter queries FortiGate Infrastructure 7.2 Study Guide (p.73): "What about traffic originating from FortiGate? Some system daemons, such as NTP and FortiGuard updates, generate traffic coming from FortiGate. Traffic coming from FortiGate to those global services originates from the management VDOM. One, and only one, of the VDOMs on a FortiGate device is assigned the role of the management VDOM. It is important to note that the management VDOM designation is solely for traffic originated by FortiGate, such as FortiGuard updates, and has no effect on traffic passing through FortiGate." Reference and download study guide: https://ebin.pub/fortinet-fortigate-infrastructure-study-guide-for-fortios-72.html

Kaleema
Feb 13, 2023

BC for sure

Brandon534
Jul 5, 2023

cannot be BC. PKI is for VPN. DNS is handled by the management VDOM per Infrastructure Study Guide page 73

GeniusAOptions: AB
Dec 22, 2023

AB is the ideal answers