exam questions

Exam NSE4_FGT-6.0 All Questions

View all questions & answers for the NSE4_FGT-6.0 exam

Exam NSE4_FGT-6.0 topic 1 question 99 discussion

Actual exam question from Fortinet's NSE4_FGT-6.0
Question #: 99
Topic #: 1
[All NSE4_FGT-6.0 Questions]

Examine this FortiGate configuration:

Examine the output of the following debug command:

Based on the diagnostic outputs above, how is the FortiGate handling the traffic for new sessions that require inspection?

  • A. It is allowed, but with no inspection
  • B. It is allowed and inspected as long as the inspection is flow based
  • C. It is dropped.
  • D. It is allowed and inspected, as long as the only inspection required is antivirus.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
chameleon_eh
Highly Voted 4 years, 10 months ago
The answer is C. FortiGate_Infrastructure_6.2_Study_Guide-Online (Page 394) It says: "However, if the memory usage exceeds the extreme threshold, new sessions are ALWAYS DROPPED, regardless of the FortiGate configuration." Note: "Extreme threshold is when the memory usage goes above 95%, and all NEW sessions are dropped. (page 392).
upvoted 13 times
...
Samanosuke
Highly Voted 5 years, 7 months ago
C because it exceeded the Extreme memory threshold.
upvoted 10 times
...
einstein85
Most Recent 2 years, 1 month ago
Selected Answer: C
The answer is C.
upvoted 1 times
...
virab
2 years, 6 months ago
memory-use-threshold-extreme The threshold at which memory usage is considered extreme and new sessions are dropped, in percent of total RAM (default = 95).
upvoted 1 times
...
for3nsic
2 years, 10 months ago
the traffic is dropped >>> Fortigate is on conserve mode 'extreme' 3 memory thresholds : red, extreme and green 'red' and 'extreme' : Both 'red' and 'extreme' are thresholds to enter in 'conserve mode' when the system memory used is over their thresholds. When the used memory goes over the defined red threshold, the kernel raises the conserve mode state. FortiGate functions reacting to conserve mode state, like antivirus transparent proxies, would apply their own restriction based on their settings. If used memory continues to increase and reach the 'extreme' threshold, conserve mode action taken with the red threshold are still active and additionally new sessions will be dropped. 'green' : When used memory goes below the 'green' threshold, kernel releases the conserve mode state. FortiGate functions reacting to conserve mode state would stop their restriction measures.
upvoted 1 times
...
lenz99
4 years, 3 months ago
hi SMEs, so what is the correct answer that is taken in the NSE4 exam?
upvoted 1 times
...
henzoo
4 years, 4 months ago
A is correct until the memory used reaches the "red threashold" but is below the "extreme threshold" level. If the memory reaches the "threashold extreme" level, C is correct as explained in FortiGate_Infrastructure_6.2_Study_Guide-Online (Page 394)
upvoted 2 times
...
ramiropalm
4 years, 5 months ago
According the following link: https://kb.fortinet.com/kb/microsites/search.do?cmd=displayKC&docType=kc&externalId=FD48774&sliceId=1&docTypeID=DT_KCARTICLE_1_1&dialogID=183032690&stateId=1%200%20183034101%27) "Threshold at which memory usage is considered extreme, and new sessions are dropped, in percent of total RAM (default = 95). 'memory-use-threshold-green'." Dont know if is the same for Forti 6.2. :/ So in the output the green treshold is 88%, maybe is A according to Forti Infra p 418 "pass (default): All new sessions pass without inspection"
upvoted 1 times
...
wassimtrabelsi
4 years, 5 months ago
The answer is C. FortiGate_Infrastructure_6.2_Study_Guide-Online (Page 395)
upvoted 1 times
...
ramzie
4 years, 6 months ago
Answer is C
upvoted 1 times
...
OCZY
4 years, 7 months ago
Bonne Réponse : C
upvoted 1 times
...
gooz
4 years, 7 months ago
Nse 4 6.4 sample questions , A is wrong C is correct
upvoted 1 times
...
Mohamed_M
4 years, 7 months ago
C because Extreme memory threshold : "If memory use reaches the extreme threshold (95% memory used), new sessions are dropped and red threshold conserve mode actions continue." https://help.fortinet.com/fos50hlp/56/Content/FortiOS/fortigate-security-profiles/Other_Profile_Considerations/Conserve%20mode.htm
upvoted 1 times
...
Null0
4 years, 8 months ago
Correct answer is A. Please check this https://kb.fortinet.com/kb/documentLink.do?externalID=10209
upvoted 1 times
...
Deep_Purple
4 years, 8 months ago
A https://kb.fortinet.com/kb/documentLink.do?externalID=10209
upvoted 1 times
...
Fr4nx
4 years, 11 months ago
A: What happens when the FortiGate unit enters conserve mode depends on how you have av-failopen configured, in this case is the default, pass:The pass setting allows traffic to bypass the AV proxy and continue to its destination. Since the traffic is bypassing the proxy, no Security Profiles scanning that requires the AV proxy is performed. Security Profiles scanning that does not require the AV proxy continues normally. Use the pass setting when access is more important than security while the problem is rectified.
upvoted 1 times
...
joeytrib
4 years, 11 months ago
Correct answer : C Explanation : if the memory usage keeps increasing, it might exceed the extreme threshold. While the memory usage is above this highest threshold, all new sessions are dropped.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago