[2024] Free NSE6_FNC-7.2 Exam Dumps to Pass Exam Easily
NSE6_FNC-7.2 Exam Dumps, NSE6_FNC-7.2 Practice Test Questions
NEW QUESTION # 21
In which view would you find who made modifications to a Group?
- A. The Admin Auditing view
- B. The Security Events view
- C. The Alarms view
- D. The Event Management view
Answer: A
Explanation:
It's important to audit Group Policy changes in order to determine the details of changes made to Group Policies by delegated users.
NEW QUESTION # 22
Where are logical network values defined?
- A. In the model configuration view of each infrastructure device
- B. On the profiled devices view
- C. In the port properties view of each port
- D. In the security and access field of each host record
Answer: A
NEW QUESTION # 23
An administrator wants the Host At Risk event to generate an alarm. What is used to achieve this result?
- A. A security trigger activity
- B. An event to action mapping
- C. An event to alarm mapping
- D. A security filter
Answer: C
NEW QUESTION # 24
During the on-boarding process through the captive portal, why would a host that successfully registered remain stuck in the Registration VLAN? (Choose two.)
- A. Bridging is enabled on the host
- B. There is another unregistered host on the same port.
- C. The ports default VLAN is the same as the Registration VLAN.
- D. The wrong agent is installed.
Answer: C,D
NEW QUESTION # 25
During the on-boarding process through the captive portal, what are two reasons why a host that successfully registered would remain stuck in the Registration VLAN? (Choose two.)
- A. The port default VLAN is the same as the Registration VLAN.
- B. The wrong agent is installed.
- C. There is another unregistered host on the same port.
- D. Bridging is enabled on the host.
Answer: A,C
NEW QUESTION # 26
Which two methods can be used to gather a list of installed applications and application details from a host? (Choose two)
- A. MDM integration
- B. Portal page on-boarding options
- C. Agent technology
- D. Application layer traffic inspection
Answer: B,D
NEW QUESTION # 27
In an isolation VLAN which three services does FortiNAC supply? (Choose three.)
- A. DNS
- B. ISMTP
- C. NTP
- D. DHCP
- E. Web
Answer: A,D,E
NEW QUESTION # 28
By default, if after a successful Layer 2 poll, more than 20 endpoints are seen connected on a single switch port simultaneously, what happens to the port?
- A. The port is added to the Forced Registration group
- B. The port is disabled
- C. The port is switched into the Dead-End VLAN
- D. The port becomes a threshold uplink
Answer: D
NEW QUESTION # 29
By default, if more than 20 hosts are seen connected on a single port simultaneously, what will happen to the port?
- A. The port becomes a threshold uplink.
- B. The port is disabled.
- C. The port is added to the Forced Registration group.
- D. The port is switched into the Dead-End VLAN.
Answer: D
NEW QUESTION # 30
Which agent is used only as part of a login script?
- A. Dissolvable
- B. Persistent
- C. Passive
- D. Mobile
Answer: C
Explanation:
If the logon script runs the logon application in persistent mode, configure your Active Directory server not to run scripts synchronously.
NEW QUESTION # 31
Refer to the exhibit.
If you are forcing the registration of unknown (rogue) hosts, and an unknown (rogue) host connects to a port on the switch, what will occur?
- A. The host is moved to VLAN 111.
- B. The host is disabled.
- C. The host is moved to a default isolation VLAN.
- D. No VLAN change is performed
Answer: D
NEW QUESTION # 32
Which three are components of a security rule? (Choose three.)
- A. Security String
- B. User or host profile
- C. Methods
- D. Trigger
- E. Action
Answer: B,D,E
NEW QUESTION # 33
What would occur if both an unknown (rogue) device and a known (trusted) device simultaneously appeared on a port that is a member of the Forced Registration port group?
- A. The port would be provisioned to the registration network, and both hosts would be isolated.
- B. The port would be provisioned for the normal state host, and both hosts would have access to that VLAN.
- C. The port would not be managed, and an event would be generated.
- D. The port would be administratively shut down.
Answer: B
NEW QUESTION # 34
What would occur if both an unknown (rogue) device and a known (trusted) device simultaneously appeared on a port that is a member of the Forced Registration port group?
- A. The port would be provisioned to the registration network, and both hosts would be isolated.
- B. The port would be provisioned for the normal state host, and both hosts would have access to that VLAN.
- C. The port would not be managed, and an event would be generated.
- D. The port would be administratively shut down.
Answer: A
NEW QUESTION # 35
Which three circumstances trigger Layer 2 polling of infrastructure devices? (Choose three.)
- A. Manual polling
- B. Linkup and Linkdown traps
- C. A failed Layer 3 poll
- D. Scheduled poll timings
- E. A matched security policy
Answer: A,B,D
NEW QUESTION # 36
Which two of the following are required for endpoint compliance monitors? (Choose two.)
- A. Security rule
- B. Custom scan
- C. Logged on user
- D. Persistent agent
Answer: B,D
Explanation:
DirectDefense's analysis of FireEye Endpoint attests that the products help meet the HIPAA Security Rule.
In the menu on the left click the + sign next to Endpoint Compliance to open it.
Reference:
https://docs.fortinet.com/document/fortinac/8.5.2/administration-guide/92047/add-or-modify-a-scan
NEW QUESTION # 37
In a wireless integration, how does FortiNAC obtain connecting MAC address information?
- A. End station traffic monitoring
- B. MAC notification traps
- C. RADIUS
- D. Link traps
Answer: B
NEW QUESTION # 38
Which three communication methods are used by FortiNAC to gather information from and control, infrastructure devices? (Choose three.)
- A. SNMP
- B. FTP
- C. RADIUS
- D. SMTP
- E. CLI
Answer: A,C,E
Explanation:
FortiNAC Study Guide 7.2 | Page 11
NEW QUESTION # 39
How should you configure MAC notification traps on a supported switch?
- A. Configure them on all ports except uplink ports
- B. Configure them only after you configure linkup and linkdown traps
- C. Configure them only on ports set as 802 1q trunks
- D. Configure them on all ports on the switch
Answer: B
NEW QUESTION # 40
In a wireless integration, what method does FortiNAC use to obtain connecting MAC address information?
- A. RADIUS
- B. Endstation traffic monitoring
- C. SNMP traps
Answer: A
Explanation:
D Link traps
NEW QUESTION # 41
Which group type can have members added directly from the FortiNAC Control Manager?
- A. Port
- B. Administrator
- C. Device
- D. Host
Answer: B
NEW QUESTION # 42
Refer to the exhibit, and then answer the question below.
Which host is rogue?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: B
NEW QUESTION # 43
Refer to the exhibit.
If you are forcing the registration of unknown (rogue) hosts, and an unknown (rogue) host connects to a port on the switch, what occurs?
- A. The host is moved to a default isolation VLAN.
- B. The host is moved to VLAN 111.
- C. The host is disabled.
- D. No VLAN change is performed.
Answer: A
NEW QUESTION # 44
What would happen if a port was placed in both the Forced Registration and the Forced Remediation port groups?
- A. Only rogue hosts would be impacted.
- B. Only al-risk hosts would be impacted.
- C. Both types of enforcement would be applied.
- D. Both enforcement groups cannot contain the same port.
Answer: A
NEW QUESTION # 45
......
Fortinet NSE6_FNC-7.2 Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
| Topic 4 |
|
NSE6_FNC-7.2 Exam Dumps, NSE6_FNC-7.2 Practice Test Questions: https://www.prepawayexam.com/Fortinet/braindumps.NSE6_FNC-7.2.ete.file.html
Free NSE6_FNC-7.2 Study Guides Exam Questions and Answer: https://drive.google.com/open?id=1jI3Z6NI424SjZhTW-aJAJT5gVrUohPai