Spring Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70percent

Fortinet NSE5_FNC_AD_7.6 Fortinet NSE 5 - FortiNAC-F 7.6 Administrator Exam Practice Test

Demo: 17 questions
Total 59 questions

Fortinet NSE 5 - FortiNAC-F 7.6 Administrator Questions and Answers

Question 1

Refer to the exhibits.

Given the current configuration, what would happen if a contractor triggered two of the defined security filters?

Options:

A.

Two security events would be generated, but no security alarm would be generated

B.

A security alarm and two security events would be generated.

C.

Three security events and one security alarm would be generated.

D.

A security event and a security alarm would be generated.

Question 2

Where should you configure MAC notification traps on a supported switch?

Options:

A.

Only on ports that generate linkup and linkdown traps

B.

Only on ports defined as learned uplinks

C.

On all ports on the switch

D.

On all ports except uplink ports

Question 3

An administrator wants FortiNAC-F to pass firewall tags to FortiGate to leverage dynamic address groups used in firewall policies. On FortiNAC-F, what determines the values that are passed?

Options:

A.

Model configuration

B.

Device profiling rule

C.

Security rule

D.

RADIUS group attribute

Question 4

Refer to the exhibit.

An administrator wants to use FortiNAC-F to automatically provision printers throughout their organization. Each building uses its own local VLAN for printers.

Which FortiNAC-F feature would allow this to be accomplished with a single network access policy?

Options:

A.

Dynamic host groups

B.

Logical networks

C.

Device profiling rules

D.

Preferred VLAN designations

Question 5

What must an administrator configure to allow FortiNAC-F to process incoming syslog messages that are not supported by default?

Options:

A.

A Syslog Service Connector

B.

A Security Action

C.

A Security Event Parser

D.

A Log Receiver

Question 6

While discovering network infrastructure devices, a switch appears in the inventory topology with a question mark (?) on the icon. What would cause this?

Options:

A.

The wrong SNMP community string was entered during discovery.

B.

The SNMP ObjectlD is not recognized by FortiNAC-F.

C.

A read-only SNMP community siring was used.

D.

SNMP is not enabled on the switch.

Question 7

Which two statements are true about integrating a third-party device using SNMP traps from that device as input to generate an event? (Choose two.)

Options:

A.

The sending device must be modeled in the inventory topology.

B.

The sending device must support SNMPv3.

C.

set allowaccess snmp must be configured using the CLI on the FortiNAC-F receiving interface.

D.

The IP address OID and MAC address OID must be configured in the trap MIB file.

Question 8

How can an administrator configure FortiNAC-F to normalize incoming syslog event levels across vendors?

Options:

A.

Configure severity mappings.

B.

Configure the vendor OUI settings.

C.

Configure the security rule settings.

D.

Configure event to alarm mappings.

Question 9

As part of a company policy, all end stations must be scanned for compliance each day. The security administrators want to satisfy this requirement without any necessary interaction from the end user. Which two agents can provide that functionality? (Choose two.)

Options:

A.

Dissolvable

B.

Persistent

C.

Passive

D.

Mobile

Question 10

Refer to the exhibit.

What will happen to the host of a guest user created from this template if the time of connection is 8:00 PM?

Options:

A.

The host will be marked as non-authenticated.

B.

The host will be marked as a rogue device.

C.

The host will be marked as at-risk.

D.

The host will be administratively disabled.

Question 11

Two FortiNAC-F devices have been configured as a 1 + 1 HA pair. The primary server went offline and a successful failover to the secondary has occurred. What happens if the primary server comes back online?

Options:

A.

The primary and secondary servers will resume communication and the secondary will maintain control.

B.

The secondary server will update the primary and the servers will load balance until an administrator forces the primary to resume full control.

C.

The primary server will determine that the secondary has control and power down for maintenance.

D.

After five successful heartbeats between the servers, the primary server will resume control.

Question 12

While troubleshooting a network connectivity issue, an administrator determines that a device was being automatically provisioned to an incorrect VLAN. Where would the administrator look to identify when and why FortiNAC-F made the network access change?

Options:

A.

The Security Event view

B.

The Reports view

C.

The Port Changes view

D.

The Admin Auditing view

Question 13

When configuring FortiNAC-F to manage FortiGate VPN users, an endpoint compliance policy must be created for the integration.

Why is the endpoint compliance policy necessary for this type of integration?

Options:

A.

To designate the required agent type

B.

To validate the VPN user credentials

C.

To confirm the installed endpoint certificate

D.

To validate the VPN client being used

Question 14

An administrator wants to continually monitor endpoints for the existence of a specific registry key and the status of a required security service. Which two requirements must be in place for the administrator to use FortiNAC-F compliance monitors? (Choose two.)

Options:

A.

MDM integration

B.

Persistent agent

C.

Custom scan

D.

Remediation admin scan

Question 15

Refer to the exhibit.

If a host is connected to a port in the Building 1 First Floor Ports group, what must also be true to match this user/host profile?

Options:

A.

The host must have a role value of contractor, an installed persistent agent or a security access value of contractor, and be connected between 6 AM and 5 PM.

B.

The host must have a role value of contractor or an installed persistent agent, a security access value of contractor, and be connected between 9 AM and 5 PM.

C.

The host must have a role value of contractor or an installed persistent agent or a security access value of contractor, and be connected between 6 AM and 5 PM.

D.

The host must have a role value of contractor or an installed persistent agent and a security access value of contractor, and be connected between 6 AM and 5 PM.

Question 16

An administrator manages a corporate environment where all users log into the corporate domain each time they connect to the network. The administrator wants to leverage login scripts to use a FortiNAC-F agent to enhance endpoint visibility

Which agent can be deployed as part of a login script?

Options:

A.

Persistent

B.

Dissolvable

C.

Mobile

D.

Passive

Question 17

When configuring isolation networks in the configuration wizard, why does a layer 3 network typo allow for mora than ono DHCP scope for each isolation network typo?

Options:

A.

The layer 3 network type allows for one scope for each possible host status.

B.

Configuring more than one DHCP scope allows for DHCP server redundancy

C.

There can be more than one isolation network of each type

D.

Any scopes beyond the first scope are used if the initial scope runs out of IP addresses.

Demo: 17 questions
Total 59 questions