exam questions

Exam NSE4_FGT-6.2 All Questions

View all questions & answers for the NSE4_FGT-6.2 exam

Exam NSE4_FGT-6.2 topic 1 question 65 discussion

Actual exam question from Fortinet's NSE4_FGT-6.2
Question #: 65
Topic #: 1
[All NSE4_FGT-6.2 Questions]

Refer to the exhibit.

The exhibit shows FortiGate configuration and the output of the debug command.
Based on the diagnostic output, how is the FortiGate handling the traffic for new sessions that require proxy based inspection?

  • A. It is allowed, but with no inspection.
  • B. It is allowed and inspected, as long as the only inspection required is antivirus.
  • C. It is dropped.
  • D. It is allowed and inspected, as long as the inspection is flow based.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
NETeng01
Highly Voted 4 years, 3 months ago
answer is C
upvoted 9 times
...
SebaAr22
Highly Voted 4 years, 3 months ago
C because extreme mode is activated
upvoted 7 times
...
scuadro
Most Recent 4 years, 2 months ago
Correct answer C av-failopen pass (default): All new sessions pass without inspection but the 3 memory thresholds : red, extreme and green are set with the values: green: 82% red: 88% extreme: 95% these values serve as a reference for the “memory used” which in this case is 97% used. So… Fortigate Infrastructure 6.2 Study Guide page 396 says: However, if the “memory usage exceeds” the “extreme threshold”, new sessions “are always dropped”, regardless of the FortiGate configuration.
upvoted 7 times
...
pollyy
4 years, 2 months ago
C is correct because of the extreme mode activated.
upvoted 4 times
...
Georgio
4 years, 3 months ago
Answer is A. fail-open mode is pass. the default mode when allowing trafic is more important than security. the other mode are off and one-shot. https://docs.fortinet.com/document/fortigate/6.0.0/handbook/681934/conserve-mode
upvoted 6 times
...
variaj8
4 years, 4 months ago
The answer is A, FortiGate Infraestructure 6.2 Study Guide pag. 396
upvoted 2 times
variaj8
4 years, 4 months ago
my fault, i didnt see the 95% in the RAM, the correct answer is C
upvoted 6 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago