Winter Special Sale Limited Time 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 713PS592

NSE6_FNC-7.2 Fortinet NSE 6 - FortiNAC 7.2 Questions and Answers

Questions 4

Where do you look to determine which network access policy, if any is being applied to a particular host?

Options:

A.

The Policy Details view for the host

B.

The Connections view

C.

The Port Properties view of the hosts port

D.

The Policy Logs view

Buy Now
Questions 5

Which three communication methods are used by FortiNAC to gather information from and control, infrastructure devices? (Choose three.)

Options:

A.

CLI

B.

SMTP

C.

SNMP

D.

FTP

E.

RADIUS

Buy Now
Questions 6

How are logical networks assigned to endpoints?

Options:

A.

Through device profiling rules

B.

Through network access policies

C.

Through Layer 3 polling configurations

D.

Through FortiGate IPv4 policies

Buy Now
Questions 7

What would occur if both an unknown (rogue) device and a known (trusted) device simultaneously appeared on a port that is a member of the Forced Registration port group?

Options:

A.

The port would be provisioned for the normal state host, and both hosts would have access to that VLAN.

B.

The port would not be managed, and an event would be generated.

C.

The port would be provisioned to the registration network, and both hosts would be isolated.

D.

The port would be administratively shut down.

Buy Now
Questions 8

An administrator is configuring FortiNAC to manage FortiGate VPN users. As part of the configuration, the administrator must configure a few FortiGate firewall policies.

What is the purpose of the FortiGate firewall policy that applies to unauthorized VPN clients?

Options:

A.

To deny access to only the production DNS server

B.

To allow access to only the FortiNAC VPN interface

C.

To allow access to only the production DNS server

D.

To deny access to only the FortiNAC VPN interface

Buy Now
Questions 9

Where are logical network values defined?

Options:

A.

In the model configuration view of each infrastructure device

B.

In the port properties view of each port

C.

On the profiled devices view

D.

In the security and access field of each host record

Buy Now
Questions 10

Which group type can have members added directly from the FortiNAC Control Manager?

Options:

A.

Administrator

B.

Device

C.

Port

D.

Host

Buy Now
Questions 11

In which view would you find who made modifications to a Group?

Options:

A.

The Event Management view

B.

The Security Events view

C.

The Alarms view

D.

The Admin Auditing view

Buy Now
Questions 12

Which two of the following are required for endpoint compliance monitors? (Choose two.)

Options:

A.

Persistent agent

B.

Logged on user

C.

Security rule

D.

Custom scan

Buy Now
Questions 13

Which three of the following are components of a security rule? (Choose three.)

Options:

A.

Security String

B.

Methods

C.

Action

D.

User or host profile

E.

Trigger

Buy Now
Questions 14

When configuring isolation networks in the configuration wizard, why does a Layer 3 network type allow for more than one DHCP scope for each isolation network type?

Options:

A.

There can be more than one isolation network of each type.

B.

Any scopes beyond the first scope are used if the Initial scope runs out of IP addresses.

C.

Configuring more than one DHCP scope allows for DHCP server redundancy.

D.

The Layer 3 network type allows for one scope for each possible host status.

Buy Now
Questions 15

When FortiNAC passes a firewall tag to FortiGate, what determines the value that is passed?

Options:

A.

Security rule

B.

Device profiling rule

C.

RADIUS group attribute

D.

Logical network

Buy Now
Questions 16

What agent is required in order to detect an added USB drive?

Options:

A.

Persistent

B.

Dissolvable

C.

Mobile

D.

Passive

Buy Now
Questions 17

What causes a host's state to change to "at risk"?

Options:

A.

The host has failed an endpoint compliance policy or admin scan.

B.

The logged on user is not found in the Active Directory.

C.

The host has been administratively disabled.

D.

The host is not in the Registered Hosts group.

Buy Now
Exam Code: NSE6_FNC-7.2
Exam Name: Fortinet NSE 6 - FortiNAC 7.2
Last Update: Dec 3, 2024
Questions: 57

PDF + Testing Engine

$66  $164.99

Testing Engine

$50  $124.99
buy now NSE6_FNC-7.2 testing engine

PDF (Q&A)

$42  $104.99
buy now NSE6_FNC-7.2 pdf