Fortinet Network Security Expert 8 Written Exam (NSE8 801 - FortiOS 5.2) - NSE8 模擬練習

Referring to the exhibit, which statement is true?

正解: C
A customer just bought an additional FortiGate device and plans to use their existing load balancer to
distribute traffic across two FortiGate units participating network serving different neighbors. The
customer has mixed traffic of 1Pv4 and 1Pv6 TCP, UDP, and ICMP. The two FortiGate devices shown in
the exhibit should be redundant to each other so that the NAT session and active session tables will
synchronize and fail over to the unit that is still operating without any loss of data if one of the units fail.
Which high availability solution would you implement?

正解: A
Referring to the exhibit, users are reporting that their FortiFones ring but when they pick up, the cannot
hear each other. The FortiFones use SIP to communicate with the SIP Proxy Server and RTP between
the phones.
Which configuration change will resolve the problem?

A:

B:

C:

D:

正解: B
A university is looking for a solution with the following requirements:
- wired and wireless connectivity
- authentication (LDAP)
- Web filtering, DLP and application control
- data base integration using LDAP to provide access to those students who are up-to-date with their
monthly payments
-support for an external captive portal
Which solution meets these requirements?

正解: C
Your colleague has enabled virtual clustering to load balance traffic between the cluster units. You notice
that all traffic is currently directed to a single FortiGate unit. Your colleague has applied the configuration
shown in the exhibit.
Which step would you perform to load balance traffic within the virtual cluster?

正解: D
You are installing a new FortiAP as shown on the exhibit, however, the FortiAP cannot discover the
FortiGate. The FortiAP obtained an IP from the DHCP server and is reachable.
Which two configurations will resolve the problem? (Choose two.)

A:

B:

C:

D:

正解: D
A data center for example.com hosts several separate Web applications. Users authenticate with all of
them by providing their Active Directory (AD) login credentials. You do not have access to Example, Inc.'s
AD server. Your solution must do the following:
- provide single sign-on (SSO) for all protected Web applications
- prevent login brute forcing
- scan FTPS connections to the Web servers for exploits
- scan Webmail for OWASP Top 10 vulnerabilities such as session cookie hijacking, XSS, and SQL
injection attacks
Which solution meets these requirements?

正解: D