Questão 1
Questão
Some system daemons, such as NTP and FortiGuard updates, generate traffic coming from FortiGate. All the VDOMs on a FortiGate device have assigned the role of the management VDOM. Traffic coming from FortiGate to those global services originates from the management VDOM. By default, the VDOM root acts as the management VDOM, but you can manually reassign this task to a different VDOM.
Questão 2
Questão
What traffic is always generated from the management VDOM?
Responda
-
a. Link Health Monitor
-
b. FortiGuard
Questão 3
Questão
Which of the following statements about the management VDOM is true?
Responda
-
a. It is root by default and cannot be changed.
-
b. It is root by default, but can be changed to any VDOM.
Questão 4
Responda
-
Virtual Domain
-
Virtual Direct Main
Questão 5
Questão
Which type of administrator can make changes to all VDOMS?
Questão 6
Questão
Which of the following statements about VDOM administrators is true?
Questão 7
Questão
Afiect all configured VDOMs: (Select 5)
Responda
-
Hostname
-
HA settings
-
FortiGuard settings
-
System time
-
Administrative accounts
-
IP Interface
-
Fortiguard account
-
Unit serial number
Questão 8
Questão
Configured separately, in each VDOM: (Select 5)
Responda
-
Operating mode (transparent, NAT/route)
-
Inspection mode (flow—based, proxy—based)
-
Routes and network interfaces
-
Firewall policies
-
Security profiles
-
Hostname
-
VPN
Questão 9
Questão
Which of the following configuration settings are global settings?
Responda
-
a. Firewall policies
-
b. FortiGuard settings
Questão 10
Questão
Which of the following configuration settings are per VDOM settings?
Responda
-
a. Host name
-
b. Inspection mode
Questão 11
Questão
Complete:
Note that similar to using inter—VLAN routing, Layer 3 must be involved-you cannot create an inter—VDOM link between Layer 2 transparent mode VDOMs.
Responda
-
At least one of the VDOMs must be operating in NAT mode. This, among other benefits, prevents potential Layer 2 loops.
-
At least one of the VDOMs must be operating in transparent mode. This, among other benefits, prevents potential Layer 2 loops.
Questão 12
Questão
For a FortiGate device with two NP4 or NP6 processors, there are two accelerated inter—VDOM links, each with two interfaces:
Questão 13
Questão
Which is a requirement for creating an inter—VDOM link between two VDOMs?
Questão 14
Questão
Which type of VDOM link requires that both sides of the link be in the same IP subnet?
Responda
-
a. NAT—to—transparent
-
b. NAT-to-NAT
Questão 15
Questão
Of these options, which one is a possible reason why an administrator might not be able to gain access to a specific VDOM?
Questão 16
Questão
Which troubleshooting tool is best suited when trying to verify the firewall policy used by an inter-VDOM link?
Responda
-
a. Sniffer trace
-
b. Packet flow trace