[2024] Free NSE6_FNC-7.2 Exam Dumps to Pass Exam Easily [Q21-Q45]

Share

[2024] Free NSE6_FNC-7.2 Exam Dumps to Pass Exam Easily

NSE6_FNC-7.2 Exam Dumps, NSE6_FNC-7.2 Practice Test Questions

NEW QUESTION # 21
In which view would you find who made modifications to a Group?

  • A. The Admin Auditing view
  • B. The Security Events view
  • C. The Alarms view
  • D. The Event Management view

Answer: A

Explanation:
It's important to audit Group Policy changes in order to determine the details of changes made to Group Policies by delegated users.


NEW QUESTION # 22
Where are logical network values defined?

  • A. In the model configuration view of each infrastructure device
  • B. On the profiled devices view
  • C. In the port properties view of each port
  • D. In the security and access field of each host record

Answer: A


NEW QUESTION # 23
An administrator wants the Host At Risk event to generate an alarm. What is used to achieve this result?

  • A. A security trigger activity
  • B. An event to action mapping
  • C. An event to alarm mapping
  • D. A security filter

Answer: C


NEW QUESTION # 24
During the on-boarding process through the captive portal, why would a host that successfully registered remain stuck in the Registration VLAN? (Choose two.)

  • A. Bridging is enabled on the host
  • B. There is another unregistered host on the same port.
  • C. The ports default VLAN is the same as the Registration VLAN.
  • D. The wrong agent is installed.

Answer: C,D


NEW QUESTION # 25
During the on-boarding process through the captive portal, what are two reasons why a host that successfully registered would remain stuck in the Registration VLAN? (Choose two.)

  • A. The port default VLAN is the same as the Registration VLAN.
  • B. The wrong agent is installed.
  • C. There is another unregistered host on the same port.
  • D. Bridging is enabled on the host.

Answer: A,C


NEW QUESTION # 26
Which two methods can be used to gather a list of installed applications and application details from a host? (Choose two)

  • A. MDM integration
  • B. Portal page on-boarding options
  • C. Agent technology
  • D. Application layer traffic inspection

Answer: B,D


NEW QUESTION # 27
In an isolation VLAN which three services does FortiNAC supply? (Choose three.)

  • A. DNS
  • B. ISMTP
  • C. NTP
  • D. DHCP
  • E. Web

Answer: A,D,E


NEW QUESTION # 28
By default, if after a successful Layer 2 poll, more than 20 endpoints are seen connected on a single switch port simultaneously, what happens to the port?

  • A. The port is added to the Forced Registration group
  • B. The port is disabled
  • C. The port is switched into the Dead-End VLAN
  • D. The port becomes a threshold uplink

Answer: D


NEW QUESTION # 29
By default, if more than 20 hosts are seen connected on a single port simultaneously, what will happen to the port?

  • A. The port becomes a threshold uplink.
  • B. The port is disabled.
  • C. The port is added to the Forced Registration group.
  • D. The port is switched into the Dead-End VLAN.

Answer: D


NEW QUESTION # 30
Which agent is used only as part of a login script?

  • A. Dissolvable
  • B. Persistent
  • C. Passive
  • D. Mobile

Answer: C

Explanation:
If the logon script runs the logon application in persistent mode, configure your Active Directory server not to run scripts synchronously.


NEW QUESTION # 31
Refer to the exhibit.

If you are forcing the registration of unknown (rogue) hosts, and an unknown (rogue) host connects to a port on the switch, what will occur?

  • A. The host is moved to VLAN 111.
  • B. The host is disabled.
  • C. The host is moved to a default isolation VLAN.
  • D. No VLAN change is performed

Answer: D


NEW QUESTION # 32
Which three are components of a security rule? (Choose three.)

  • A. Security String
  • B. User or host profile
  • C. Methods
  • D. Trigger
  • E. Action

Answer: B,D,E


NEW QUESTION # 33
What would occur if both an unknown (rogue) device and a known (trusted) device simultaneously appeared on a port that is a member of the Forced Registration port group?

  • A. The port would be provisioned to the registration network, and both hosts would be isolated.
  • B. The port would be provisioned for the normal state host, and both hosts would have access to that VLAN.
  • C. The port would not be managed, and an event would be generated.
  • D. The port would be administratively shut down.

Answer: B


NEW QUESTION # 34
What would occur if both an unknown (rogue) device and a known (trusted) device simultaneously appeared on a port that is a member of the Forced Registration port group?

  • A. The port would be provisioned to the registration network, and both hosts would be isolated.
  • B. The port would be provisioned for the normal state host, and both hosts would have access to that VLAN.
  • C. The port would not be managed, and an event would be generated.
  • D. The port would be administratively shut down.

Answer: A


NEW QUESTION # 35
Which three circumstances trigger Layer 2 polling of infrastructure devices? (Choose three.)

  • A. Manual polling
  • B. Linkup and Linkdown traps
  • C. A failed Layer 3 poll
  • D. Scheduled poll timings
  • E. A matched security policy

Answer: A,B,D


NEW QUESTION # 36
Which two of the following are required for endpoint compliance monitors? (Choose two.)

  • A. Security rule
  • B. Custom scan
  • C. Logged on user
  • D. Persistent agent

Answer: B,D

Explanation:
DirectDefense's analysis of FireEye Endpoint attests that the products help meet the HIPAA Security Rule.
In the menu on the left click the + sign next to Endpoint Compliance to open it.
Reference:
https://docs.fortinet.com/document/fortinac/8.5.2/administration-guide/92047/add-or-modify-a-scan


NEW QUESTION # 37
In a wireless integration, how does FortiNAC obtain connecting MAC address information?

  • A. End station traffic monitoring
  • B. MAC notification traps
  • C. RADIUS
  • D. Link traps

Answer: B


NEW QUESTION # 38
Which three communication methods are used by FortiNAC to gather information from and control, infrastructure devices? (Choose three.)

  • A. SNMP
  • B. FTP
  • C. RADIUS
  • D. SMTP
  • E. CLI

Answer: A,C,E

Explanation:
FortiNAC Study Guide 7.2 | Page 11


NEW QUESTION # 39
How should you configure MAC notification traps on a supported switch?

  • A. Configure them on all ports except uplink ports
  • B. Configure them only after you configure linkup and linkdown traps
  • C. Configure them only on ports set as 802 1q trunks
  • D. Configure them on all ports on the switch

Answer: B


NEW QUESTION # 40
In a wireless integration, what method does FortiNAC use to obtain connecting MAC address information?

  • A. RADIUS
  • B. Endstation traffic monitoring
  • C. SNMP traps

Answer: A

Explanation:
D Link traps


NEW QUESTION # 41
Which group type can have members added directly from the FortiNAC Control Manager?

  • A. Port
  • B. Administrator
  • C. Device
  • D. Host

Answer: B


NEW QUESTION # 42
Refer to the exhibit, and then answer the question below.

Which host is rogue?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: B


NEW QUESTION # 43
Refer to the exhibit.

If you are forcing the registration of unknown (rogue) hosts, and an unknown (rogue) host connects to a port on the switch, what occurs?

  • A. The host is moved to a default isolation VLAN.
  • B. The host is moved to VLAN 111.
  • C. The host is disabled.
  • D. No VLAN change is performed.

Answer: A


NEW QUESTION # 44
What would happen if a port was placed in both the Forced Registration and the Forced Remediation port groups?

  • A. Only rogue hosts would be impacted.
  • B. Only al-risk hosts would be impacted.
  • C. Both types of enforcement would be applied.
  • D. Both enforcement groups cannot contain the same port.

Answer: A


NEW QUESTION # 45
......


Fortinet NSE6_FNC-7.2 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Use logging options available on FortiNAC
  • Configure FortiGate VPN integration with FortiNAC
Topic 2
  • Configure security automation
  • Options for rogue classification
  • Configure and use FortiNAC Control Manager
Topic 3
  • Model and organize infrastructure devices
  • Monitor network devices and device status
Topic 4
  • Configure access control on FortiNAC
  • Explain and configure MDM integration

 

NSE6_FNC-7.2 Exam Dumps, NSE6_FNC-7.2 Practice Test Questions: https://www.prepawayexam.com/Fortinet/braindumps.NSE6_FNC-7.2.ete.file.html

Free NSE6_FNC-7.2 Study Guides Exam Questions and Answer: https://drive.google.com/open?id=1jI3Z6NI424SjZhTW-aJAJT5gVrUohPai