Free Fortinet NSE4_FGT-7.0 Exam Actual Questions

The questions for NSE4_FGT-7.0 were last updated On Nov 18, 2024

Question No. 1

An administrator is configuring an IPsec VPN between site A and site B. The Remote Gateway setting in both sites has been configured as Static IP Address. For site A, the local quick mode selector is 192.168.1.0/24 and the remote quick mode selector is 192.168.2.0/24.

Which subnet must the administrator configure for the local quick mode selector for site B?

Show Answer Hide Answer
Correct Answer: C

Question No. 2

Which of the following statements about central NAT are true? (Choose two.)

Show Answer Hide Answer
Correct Answer: A, B

Question No. 3

Which two types of traffic are managed only by the management VDOM? (Choose two.)

Show Answer Hide Answer
Correct Answer: A, D

Question No. 4

Which two settings can be separately configured per VDOM on a FortiGate device? (Choose two.)

Show Answer Hide Answer
Correct Answer: C, D

C: 'Operating mode is per-VDOM setting. You can combine transparent mode VDOM's with NAT mode VDOMs on the same physical Fortigate.

D: 'Inspection-mode selection has moved from VDOM to firewall policy, and the default inspection-mode is flow, so NGFW Mode can be changed from Profile-base (Default) to Policy-base directly in System > Settings from the VDOM' Page 125 of FortiGate_Infrastructure_6.4_Study_Guide


Question No. 5

Refer to the exhibit.

A network administrator is troubleshooting an IPsec tunnel between two FortiGate devices. The administrator has determined that phase 1 fails to come up. The administrator has also re-entered the pre-shared key on both FortiGate devices to make sure they match.

Based on the phase 1 configuration and the diagram shown in the exhibit, which two configuration changes will bring phase 1 up? (Choose two.)

Show Answer Hide Answer
Correct Answer: A, D

FortiGate Infrastructure 7.0 Study Guide p. 222 FortiGate Infrastructure 7.0 Study Guide p. 208