Get 100% Authentic Fortinet NSE6_FNC-7.2 Dumps with Correct Answers [Q25-Q40]

Share

Get 100% Authentic Fortinet NSE6_FNC-7.2 Dumps with Correct Answers

New Training Course NSE6_FNC-7.2 Tutorial Preparation Guide

NEW QUESTION # 25
Which two methods can be used to gather a list of installed applications and application details from a host? (Choose two.)

  • A. Agent technology
  • B. Application layer traffic inspection
  • C. MDM integration
  • D. Portal page on-boarding options

Answer: A,C


NEW QUESTION # 26
Where do you look to determine which network access policy, if any is being applied to a particular host?

  • A. The Connections view
  • B. The Policy Logs view
  • C. The Policy Details view for the host
  • D. The Port Properties view of the hosts port

Answer: C

Explanation:
FortiNAC p 382: "Under Network Access Settings - Policy Name - Name of the Network Access Policy that currently applies to the host."


NEW QUESTION # 27
Which command line shell and scripting language does FortiNAC use for WinRM?

  • A. Bash
  • B. Powershell
  • C. Linux
  • D. DOS

Answer: B

Explanation:
Open Windows PowerShell or a command prompt. Run the following command to determine if you already have WinRM over HTTPS configured.
Reference:
Admin Guide on p. 362, "Matches if the device successfully responds to a WinRM client session request. User name and password credentials are required. If there are multiple credentials, each set of credentials will be attempted to find a potential match. The commands are used to automate interaction with the device. Each command is run via Powershell."


NEW QUESTION # 28
Where are logical network values defined?

  • A. In the port properties view of each port
  • B. On the profiled devices view
  • C. In the model configuration view of each infrastructure device
  • D. In the security and access field of each host record

Answer: B


NEW QUESTION # 29
View the command and output.

What is the state of database replication?

  • A. Primary to secondary synchronization failed.
  • B. Primary to secondary database synchronization was successful.
  • C. Secondary to primary synchronization failed.
  • D. Secondary to primary synchronization was successful.

Answer: B


NEW QUESTION # 30
Which three of the following are components of a security rule? (Choose three.)

  • A. Action
  • B. Trigger
  • C. User or host profile
  • D. Methods
  • E. Security String

Answer: C,D,E


NEW QUESTION # 31
Which system group will force at-risk hosts into the quarantine network, based on point of connection?

  • A. Forced Remediation
  • B. Physical Address Filtering
  • C. Forced Quarantine
  • D. Forced Isolation

Answer: C

Explanation:
Forced Quarantine, study guide 7.2 pag 245 and 248


NEW QUESTION # 32
What capability do logical networks provide?

  • A. Point of access-base autopopulation of device groups'
  • B. IVLAN -based inventory reporting
  • C. Interactive topology view diagrams
  • D. Application of different access values from a single access policy

Answer: D

Explanation:
Logical Networks allow you to create fewer Network Access Policies than before. (FortiNAC - What's new in FortiNAC 8.5)


NEW QUESTION # 33
Which three communication methods are used by the FortiNAC to gather information from, and control, infrastructure devices? (Choose three)

  • A. DCLI
  • B. FTP
  • C. RADIUS
  • D. OSNMP
  • E. SMTP

Answer: A,B,E


NEW QUESTION # 34
What would occur if both an unknown (rogue) device and a known (trusted) device simultaneously appeared on a port that is a member of the Forced Registration port group?

  • A. The port would be provisioned for the normal state host, and both hosts would have access to that VLAN.
  • B. The port would be administratively shut down.
  • C. The port would not be managed, and an event would be generated.
  • D. The port would be provisioned to the registration network, and both hosts would be isolated.

Answer: A


NEW QUESTION # 35
What would happen if a port was placed in both the Forced Registration and the Forced Remediation port groups?

  • A. Both enforcement groups cannot contain the same port.
  • B. Only al-risk hosts would be impacted.
  • C. Both types of enforcement would be applied.
  • D. Only rogue hosts would be impacted.

Answer: D


NEW QUESTION # 36
When you create a user or host profile, which three criteria can you use? (Choose three.)

  • A. Administrative group membership
  • B. Location
  • C. Host or user group memberships
  • D. Host or user attributes
  • E. An applied access policy

Answer: A,B,E


NEW QUESTION # 37
In a wireless integration, how does FortiNAC obtain connecting MAC address information?

  • A. Link traps
  • B. RADIUS
  • C. MAC notification traps
  • D. End station traffic monitoring

Answer: C


NEW QUESTION # 38
When FortiNAC passes a firewall tag to FortiGate, what determines the value that is passed?

  • A. Logical network
  • B. Security rule
  • C. Device profiling rule
  • D. RADIUS group attribute

Answer: A


NEW QUESTION # 39
With enforcement for network access policies and at-risk hosts enabled, what will happen if a host matches a network access policy and has a state of "at risk"?

  • A. The host is isolated.
  • B. The host is provisioned based on the network access policy.
  • C. The host is provisioned based on the default access defined by the point of connection.
  • D. The host is administratively disabled.

Answer: D


NEW QUESTION # 40
......


Fortinet NSE6_FNC-7.2 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Model and organize infrastructure devices
  • Monitor network devices and device status
Topic 2
  • Network visibility and monitoring
  • Configure and use group and tag information for network devices
Topic 3
  • Configure security automation
  • Options for rogue classification
  • Configure and use FortiNAC Control Manager
Topic 4
  • Troubleshoot endpoint connectivity and classification
  • Explain access control
Topic 5
  • Explain and configure device profiling
  • Integrate with third-party devices using Syslog and SNMP trap input
Topic 6
  • Explain and configure logical networks
  • Explain isolation networks and the configuration wizard

 

Dumps of NSE6_FNC-7.2 Cover all the requirements of the Real Exam: https://freepdf.passtorrent.com/NSE6_FNC-7.2-latest-torrent.html