Zusammenfassung der Ressource
Frage 1
Frage
Some system daemons, such as NTP and FortiGuard updates, generate traffic coming from FortiGate. All the VDOMs on a FortiGate device have assigned the role of the management VDOM. Traffic coming from FortiGate to those global services originates from the management VDOM. By default, the VDOM root acts as the management VDOM, but you can manually reassign this task to a different VDOM.
Frage 2
Frage
What traffic is always generated from the management VDOM?
Antworten
-
a. Link Health Monitor
-
b. FortiGuard
Frage 3
Frage
Which of the following statements about the management VDOM is true?
Antworten
-
a. It is root by default and cannot be changed.
-
b. It is root by default, but can be changed to any VDOM.
Frage 4
Antworten
-
Virtual Domain
-
Virtual Direct Main
Frage 5
Frage
Which type of administrator can make changes to all VDOMS?
Frage 6
Frage
Which of the following statements about VDOM administrators is true?
Frage 7
Frage
Afiect all configured VDOMs: (Select 5)
Antworten
-
Hostname
-
HA settings
-
FortiGuard settings
-
System time
-
Administrative accounts
-
IP Interface
-
Fortiguard account
-
Unit serial number
Frage 8
Frage
Configured separately, in each VDOM: (Select 5)
Antworten
-
Operating mode (transparent, NAT/route)
-
Inspection mode (flow—based, proxy—based)
-
Routes and network interfaces
-
Firewall policies
-
Security profiles
-
Hostname
-
VPN
Frage 9
Frage
Which of the following configuration settings are global settings?
Antworten
-
a. Firewall policies
-
b. FortiGuard settings
Frage 10
Frage
Which of the following configuration settings are per VDOM settings?
Antworten
-
a. Host name
-
b. Inspection mode
Frage 11
Frage
Complete:
Note that similar to using inter—VLAN routing, Layer 3 must be involved-you cannot create an inter—VDOM link between Layer 2 transparent mode VDOMs.
Antworten
-
At least one of the VDOMs must be operating in NAT mode. This, among other benefits, prevents potential Layer 2 loops.
-
At least one of the VDOMs must be operating in transparent mode. This, among other benefits, prevents potential Layer 2 loops.
Frage 12
Frage
For a FortiGate device with two NP4 or NP6 processors, there are two accelerated inter—VDOM links, each with two interfaces:
Frage 13
Frage
Which is a requirement for creating an inter—VDOM link between two VDOMs?
Frage 14
Frage
Which type of VDOM link requires that both sides of the link be in the same IP subnet?
Antworten
-
a. NAT—to—transparent
-
b. NAT-to-NAT
Frage 15
Frage
Of these options, which one is a possible reason why an administrator might not be able to gain access to a specific VDOM?
Frage 16
Frage
Which troubleshooting tool is best suited when trying to verify the firewall policy used by an inter-VDOM link?
Antworten
-
a. Sniffer trace
-
b. Packet flow trace