Winter Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dumps65

Fortinet NSE6_FNC-9.1 Dumps

Fortinet NSE 6 - FortiNAC 9.1 Questions and Answers

Question 1

Which devices would be evaluated by device profiling rules?

Options:

A.

Rogue devices, each time they connect

B.

All hosts, each time they connect

C.

Known trusted devices, each time they change location

D.

Rogue devices, only when they are initially added to the database

Question 2

Where should you configure MAC notification traps on a supported switch?

Options:

A.

Configure them only after you configure linkup and linkdown traps.

B.

Configure them on all ports on the switch.

C.

Configure them only on ports set as 802 1g trunks.

D.

Configure them on all ports except uplink ports.

Question 3

Which three circumstances trigger Layer 2 polling of infrastructure devices? (Choose three.)

Options:

A.

Manual polling

B.

Scheduled poll timings

C.

A failed Layer 3 poll

D.

A matched security policy

E.

Linkup and Linkdown traps

Question 4

Which agent can receive and display messages from FortiNAC to the end user?

Options:

A.

Dissolvable

B.

Persistent

C.

Passive

D.

MDM

Question 5

What would occur if both an unknown (rogue) device and a known (trusted) device simultaneously appeared on a port that is a member of the Forced Registration port group?

Options:

A.

The port would be provisioned for the normal state host, and both hosts would have access to that VLAN.

B.

The port would not be managed, and an event would be generated.

C.

The port would be provisioned to the registration network, and both hosts would be isolated.

D.

The port would be administratively shut down.

Question 6

In an isolation VLAN which three services does FortiNAC supply? (Choose three.)

Options:

A.

NTP

B.

DHCP

C.

Web

D.

DNS

E.

ISMTP

Question 7

View the command and output shown in the exhibit.

as

What is the current state of this host?

Options:

A.

Rogue

B.

Registered

C.

Not authenticated

D.

At-Risk

Question 8

During the on-boarding process through the captive portal, what are two reasons why a host that successfully registered would remain stuck in the Registration VLAN? (Choose two.)

Options:

A.

The wrong agent is installed.

B.

The port default VLAN is the same as the Registration VLAN.

C.

Bridging is enabled on the host.

D.

There is another unregistered host on the same port.

Question 9

In which view would you find who made modifications to a Group?

Options:

A.

The Event Management view

B.

The Security Events view

C.

The Alarms view

D.

The Admin Auditing view

Question 10

Which two policy types can be created on a FortiNAC Control Manager? (Choose two.)

Options:

A.

Authentication

B.

Network Access

C.

Endpoint Compliance

D.

Supplicant EasvConnect

Question 11

Where are logical network values defined?

Options:

A.

In the model configuration view of each infrastructure device

B.

In the port properties view of each port

C.

On the profiled devices view

D.

In the security and access field of each host record

Question 12

By default, if after a successful Layer 2 poll, more than 20 endpoints are seen connected on a single switch port simultaneously, what happens to the port?

Options:

A.

The port becomes a threshold uplink

B.

The port is disabled

C.

The port is added to the Forced Registration group

D.

The port is switched into the Dead-End VLAN

Question 13

Which three communication methods are used by FortiNAC to gather information from and control, infrastructure devices? (Choose three.)

Options:

A.

CLI

B.

SMTP

C.

SNMP

D.

FTP

E.

RADIUS

Question 14

When FortiNAC passes a firewall tag to FortiGate, what determines the value that is passed?

Options:

A.

Security rule

B.

Device profiling rule

C.

RADIUS group attribute

D.

Logical network

Page: 1 / 5
Total 47 questions