Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam NSE4_FGT-6.4 topic 1 question 5 discussion

Actual exam question from Fortinet's NSE4_FGT-6.4
Question #: 5
Topic #: 1
[All NSE4_FGT-6.4 Questions]

Which two policies must be configured to allow traffic on a policy-based next-generation firewall (NGFW) FortiGate? (Choose two.)

  • A. Firewall policy
  • B. Policy rule
  • C. Security policy
  • D. SSL inspection and authentication policy
Show Suggested Answer Hide Answer
Suggested Answer: AB 🗳️
Reference:
https://docs.fortinet.com/document/fortigate/5.6.0/cookbook/38324/ngfw-policy-based-mode

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Lionardo
Highly Voted 3 years ago
C & D correct. FortiGate_Security_6.4 page 369 "NGFW policy based mode, you must configure a few policies to allow traffic: SSL inspection & Authentication, Security policy"
upvoted 29 times
...
mahmoudlol
Highly Voted 2 years, 12 months ago
C&D Security policies work with SSL Inspection & Authentication policies to inspect traffic. To allow traffic from a specific user or user group, both Security and SSL Inspection & Authentication policies must be configured. https://docs.fortinet.com/document/fortigate/6.4.0/administration-guide/978598/profile-based-ngfw-vs-policy-based-ngfw
upvoted 14 times
...
Ibrahimadwan
Most Recent 11 months, 1 week ago
C& D is correct
upvoted 1 times
...
atiles05
1 year, 8 months ago
Selected Answer: CD
C & D are the correct answers by Fortigate_Security_7.0(New Version) page 369. If you are using Policy Based Mode, SSL Inspection & Authentication (consolidated) and Security Policy are required to allow traffic.
upvoted 2 times
...
CalH
2 years ago
C & D is correct. Ref: FortiGate_Security_7.0_Study_guide Page 369
upvoted 1 times
...
gboy91
2 years, 1 month ago
C and D
upvoted 1 times
...
downlife
2 years, 2 months ago
Selected Answer: CD
C & D is correct
upvoted 1 times
...
malikgen
2 years, 2 months ago
Selected Answer: CD
Security policies work with SSL Inspection & Authentication policies to inspect traffic. To allow traffic from a specific user or user group, both Security and SSL Inspection & Authentication policies must be configured. A default SSL Inspection & Authentication policy with the certificate-inspection SSL Inspection profile is preconfigured. Traffic will match the SSL Inspection & Authentication policy first. If the traffic is allowed, packets are sent to the IPS engine for application, URL category, user, and user group match, and then, if enabled, UTM inspection (antivirus, IPS, DLP, and email filter) is performed.
upvoted 1 times
...
lrosadini
2 years, 2 months ago
C&D - FortiGate Security 6.4 Study Guide Pag 369
upvoted 1 times
...
AbdiAden
2 years, 2 months ago
A and B are correct. C is incorrect. Security policy has no sense. It's Security Profile. D is incorrect. SSL inspection and authentication policy are not mandatory. They are optional. Maybe.
upvoted 1 times
...
platontw
2 years, 3 months ago
Selected Answer: CD
C & D are the correct answers.
upvoted 2 times
...
blvackhammer
2 years, 3 months ago
Selected Answer: CD
C & D is correct
upvoted 1 times
...
kkched
2 years, 3 months ago
Selected Answer: CD
C&D are Corrects
upvoted 1 times
...
MrSaintz
2 years, 4 months ago
Selected Answer: CD
Exactly as Lionardo explained, it's in the Study Guide, very explicitly! So just an innocent question though, you hope we pay for custom view, and still apply no effort in correcting the answers, where is the value in that???
upvoted 2 times
...
NIGHTELF7
2 years, 4 months ago
C & D https://docs.fortinet.com/document/fortigate/6.2.3/cookbook/978598
upvoted 1 times
...
mrtim5700
2 years, 4 months ago
Agree with C&D
upvoted 1 times
...
stampaprints
2 years, 4 months ago
Obviously, C&D are correct 100%
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...