최신 Network Security NSE4 무료샘플문제:
1. Which statements are true regarding traffic shaping that is applied in an application sensor, and associated with the firewall policy? (Choose two.)
A) Per-IP traffic shaping cannot be used.
B) Only traffic matching the application control signature is shaped.
C) Shared traffic shaping cannot be used.
D) Can limit the bandwidth usage of heavy traffic applications.
2. Which action does the FortiGate take when link health monitor times out?
A) The distance values of all routes using interface configured in the link health monitor are increased.
B) All routes to the destination subnet configured in the link health monitor are removed from the routing table.
C) All routes using the next-hop gateway configured in the link health monitor are removed from the routing table.
D) The priority values of all routes using configured in the link health monitor are increased.
3. Which of the following statements are correct regarding a master HA unit? (Choose two)
A) Heartbeat interfaces are not required on a master unit.
B) The Master synchronizes cluster configuration with slaves.
C) Only the master has a reserved management HA interface.
D) There should be only one master unit is each HA virtual cluster.
4. Which of the following statements are true about IPsec VPNs? (Choose three.)
A) IPsec operates at the layer 2 of the OSI model.
B) IPsec increases overhead and bandwidth.
C) End-user's network applications must be properly pre-configured to send traffic across the IPsec VPN.
D) IPsec operates at the layer 3 of the OSI model.
E) IPsec protects upper layer protocols.
5. Examine the static route configuration shown below; then answer the question following it.
config router static
edit 1
set dst 172.20.1.0 255.255.255.0
set device port1
set gateway 172.11.12.1
set distance 10
set weight 5
next
edit 2
set dst 172.20.1.0 255.255.255.0
set blackhole enable
set distance 5
set weight 10
next
end
Which of the following statements correctly describes the static routing configuration provided? (Choose two.)
A) All traffic to 172.20.1.0/24 is dropped by the FortiGate.
B) The FortiGate unit creates a session entry in the session table when the traffic is being routed by the blackhole route.
C) As long as port1 is up, all traffic to 172.20.1.0/24 is routed by the static route number 1.
if the interface port1 is down, the traffic is routed using the blackhole route.
D) The FortiGate unit does NOT create a session entry in the session table when the traffic is being routed by the blackhole route.
질문과 대답:
| 질문 # 1 정답: B,D | 질문 # 2 정답: C | 질문 # 3 정답: B,D | 질문 # 4 정답: B,D,E | 질문 # 5 정답: A,D |














0 개 고객 리뷰
품질과 가치ITCertKR 의 높은 정확도를 보장하는 최고품질의 덤프는 IT인증시험에 대비하여 제작된것으로서 높은 적중율을 자랑하고 있습니다.
테스트 및 승인ITCertKR 의 덤프는 모두 엘리트한 전문가들이 실제시험문제를 분석하여 답을 작성한 만큼 시험문제의 적중률은 아주 높습니다.
쉽게 시험패스ITCertKR의 테스트 엔진을 사용하여 시험을 준비한다는것은 첫 번째 시도에서 인증시험 패스성공을 의미합니다.
주문하기전 체험ITCertKR의 각 제품은 무료 데모를 제공합니다. 구입하기로 결정하기 전에 덤프샘플문제로 덤프품질과 실용성을 검증할수 있습니다.
