Free Fortinet NSE6_FNC-8.5 Exam Actual Questions

The questions for NSE6_FNC-8.5 were last updated On Jan 13, 2025

Question No. 1

In an isolation VLAN. which three services does FortiNAC supply? (Choose three.)

Show Answer Hide Answer
Correct Answer: C, D, E

Question No. 2

Which two of the following are required for endpoint compliance monitors? (Choose two.)

Show Answer Hide Answer
Correct Answer: A, D

DirectDefense's analysis of FireEye Endpoint attests that the products help meet the HIPAA Security Rule.

In the menu on the left click the + sign next to Endpoint Compliance to open it.


https://docs.fortinet.com/document/fortinac/8.5.2/administration-guide/92047/add-or-modify-a-scan

Question No. 3

What causes a host's state to change to "at risk"?

Show Answer Hide Answer
Correct Answer: A

Failure -- Indicates that the host has failed the scan. This option can also be set manually. When the status is set to Failure the host is marked 'At Risk' for the selected scan.


Question No. 4

Refer to the exhibit.

If you are forcing the registration of unknown (rogue) hosts, and an unknown (rogue) host connects to a port on the switch, what will occur?

Show Answer Hide Answer
Correct Answer: C

The ability to limit the number of workstations that can connect to specific ports on the switch is managed with Port Security. If these limits are breached, or access from unknown workstations is attempted, the port can do any or all of the following: drop the untrusted data, notify the network administrator, or disable the port.


Question No. 5

During the on-boarding process through the captive portal, why would a host that successfully registered remain stuck in the Registration VLAN? (Choose two.)

Show Answer Hide Answer
Correct Answer: B, D

Scenario 4: NAT detection disabled, using endpoint compliance policy and agent.