Free NSE4_FGT-6.4 Exam Dumps

No Installation Required, Instantly Prepare for the NSE4_FGT-6.4 exam and please click the below link to start the NSE4_FGT-6.4 Exam Simulator with a real NSE4_FGT-6.4 practice exam questions.
Use directly our on-line NSE4_FGT-6.4 exam dumps materials and try our Testing Engine to pass the NSE4_FGT-6.4 which is always updated.

  • Exam Code: NSE4_FGT-6.4
  • Exam Title: Fortinet NSE 4 - FortiOS 6.4
  • Vendor: Fortinet
  • Exam Questions: 163
  • Last Updated: November 15th,2024

Question 1

An administrator is configuring an Ipsec between site A and siteB. The Remotes Gateway setting in both sites has been configured as Static IP Address. For site A, the local quick mode selector is 192.16.1.0/24 and the remote quick mode selector is 192.16.2.0/24. How must the administrator configure the local quick mode
selector for site B?

Correct Answer:B

Question 2

Which statement about the IP authentication header (AH) used by IPsec is true?

Correct Answer:C

Question 3

An administrator has configured the following settings:
NSE4_FGT-6.4 dumps exhibit
What are the two results of this configuration? (Choose two.)

Correct Answer:CD

Question 4

Examine the exhibit, which contains a virtual IP and firewall policy configuration.
NSE4_FGT-6.4 dumps exhibit
NSE4_FGT-6.4 dumps exhibit
NSE4_FGT-6.4 dumps exhibit
The WAN (port1) interface has the IP address 10.200.1.1/24. The LAN (port2) interface has the IP address 10.0.1.254/24.
The first firewall policy has NAT enabled on the outgoing interface address. The second firewall policy is configured with a VIP as the destination address.
Which IP address will be used to source NAT the Internet traffic coming from a workstation with the IP address 10.0.1.10/24?

Correct Answer:B
https://help.fortinet.com/fos50hlp/54/Content/FortiOS/fortigate-firewall-52/Firewall Objects/Virtual IPs.

Question 5

Which statement regarding the firewall policy authentication timeout is true?

Correct Answer:A