An administrator has configured the following settings:
config system settings
set ses-denied-traffic enable
end
config system global
set block-session-timer 30
end
What are the two results of this configuration? (Choose two.)
Correct Answer:AC
What is the limitation of using a URL list and application control on the same firewall policy, in NGFW policy-based mode?
Correct Answer:B
Refer to the exhibits.
Exhibit A shows a topology for a FortiGate HA cluster that performs proxy-based inspection on traffic. Exhibit B shows the HA configuration and the partial output of the get system ha status command.
Based on the exhibits, which two statements about the traffic passing through the cluster are true? (Choose two.)
Correct Answer:AB
Refer to the exhibit.
Review the Intrusion Prevention System (IPS) profile signature settings. Which statement is correct in adding the FTP.Login.Failed signature to the IPS sensor profile?
Correct Answer:D
Action is drop, signature default action is listed only in the signature, it would only match if action was set to
default.
Which two protocols are used to enable administrator access of a FortiGate device? (Choose two.)
Correct Answer:BC