Refer to the exhibits.An administrator creates a new address object on the root FortiGate (Local-FortiGate) in the security fabric. After synchronization, this object is not available on the downstream FortiGate (ISFW).What must the administrator do to synchronize the address object?
Answer(s): C
https://docs.fortinet.com/document/fortigate/6.4.5/administration- guide/880913/synchronizing-objects-across-the-security-fabric
Which two settings can be separately configured per VDOM on a FortiGate device? (Choose two.)
Answer(s): C,D
C: "Operating mode is per-VDOM setting. You can combine transparent mode VDOM's with NAT mode VDOMs on the same physical Fortigate.D: "Inspection-mode selection has moved from VDOM to firewall policy, and the default inspection- mode is flow, so NGFW Mode can be changed from Profile-base (Default) to Policy-base directly inSystem > Settings from the VDOM" Page 125 of FortiGate_Infrastructure_6.4_Study_Guide
Which statement is correct regarding the inspection of some of the services available by web applications embedded in third-party websites?
Answer(s): D
https://help.fortinet.com/fortiproxy/11/Content/Admin%20Guides/FPX- AdminGuide/300_System/303d_FortiG
An administrator wants to configure Dead Peer Detection (DPD) on IPSEC VPN for detecting dead tunnels. The requirement is that FortiGate sends DPD probes only when no traffic is observed in the tunnel.Which DPD mode on FortiGate will meet the above requirement?
https://kb.fortinet.com/kb/documentLink .do?externalID=FD40813
Refer to the exhibit.The global settings on a FortiGate device must be changed to align with company security policies. What does the Administrator account need to access the FortiGate global settings?
https://kb.fortinet.com/kb/documentLink .do?externalID=FD34502
Share your comments for Fortinet NSE4_FGT-7.2 exam with other users:
A and D are True
good one with explanation
This is one of the most useful study guides I have ever used.