Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam NSE4_FGT-6.0 topic 1 question 84 discussion

Actual exam question from Fortinet's NSE4_FGT-6.0
Question #: 84
Topic #: 1
[All NSE4_FGT-6.0 Questions]

View the following exhibit, which shows the firewall policies and the object uses in the firewall policies.


The administrator is using the Policy Lookup feature and has entered the search create shown in the following exhibit.

Which of the following will be highlighted based on the input criteria?

  • A. Policy with ID1.
  • B. Policies with ID 2 and 3.
  • C. Policy with ID 5.
  • D. Policy with ID 4.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
nsc92
Highly Voted 3 years, 10 months ago
The answer is C. Policy 5 is used. To answer jjrodriguezbriz, the reason service is blank in Policy 5 is because the FortiGuard Internet Service Database is dynamic and maintained by FortiGuard Labs. If you go look at the ISDB entry for facebook, you will see all the ports are listed.
upvoted 12 times
Sboudje
3 years, 8 months ago
ID 5: destination is facebook.web non .com
upvoted 1 times
...
...
uchiha001
Highly Voted 4 years, 2 months ago
correct answer is : C
upvoted 8 times
jjrodriguezbriz
4 years, 1 month ago
What about the column service in the answer C? I think A is the correct answer
upvoted 2 times
...
...
A_sec_
Most Recent 3 years, 5 months ago
I think answer is A, because there is an error in the policy 5. You can´t create a policy with service in blank.
upvoted 1 times
ira_cisco
3 years, 4 months ago
We can find it on Internet Service object as 80/443. Answer C
upvoted 1 times
...
...
ramzie
3 years, 5 months ago
Answer is A
upvoted 1 times
...
ianBrPr
3 years, 6 months ago
But Before policy ID 5, I think it matches with policy ID 4. This question is a little confuse for me.
upvoted 1 times
A_sec_
3 years, 5 months ago
No, the incoming interface isn´t port3, so policy with ID4 it can´t be.
upvoted 1 times
...
...
OCZY
3 years, 6 months ago
Bonne Réponse : C
upvoted 2 times
...
killbots
3 years, 8 months ago
Answer is A. it is the only one that matches all the criteria. C=ID5 is facebook.web not facebook.com.
upvoted 3 times
ira_cisco
3 years, 7 months ago
Answer is C. "facebook.web" is an ISDB object. not an fqdn. ISDBs maintain all the urls and ports needed for a particular service. in this case facebook. And it allows port 80 and 443
upvoted 5 times
...
...
LincDel
3 years, 10 months ago
B=no(Only matches UDP port). C=no(Because its not a valid policy). A=Yes
upvoted 1 times
...
Levis
3 years, 10 months ago
A is confirmed answer
upvoted 4 times
...
joeytrib
3 years, 11 months ago
Correct answer : C
upvoted 2 times
...
montonearm
4 years, 1 month ago
I think C
upvoted 2 times
...
Enoch
4 years, 2 months ago
I think it is C, B is about UDP service not TCP
upvoted 1 times
...
omar90
4 years, 3 months ago
answer is B
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...