Labour Day Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

NSE6_FNC-9.1 Exam Dumps - Fortinet NSE 6 - FortiNAC 9.1

Question # 4

Where should you configure MAC notification traps on a supported switch?

A.

Configure them only after you configure linkup and linkdown traps.

B.

Configure them on all ports on the switch.

C.

Configure them only on ports set as 802 1g trunks.

D.

Configure them on all ports except uplink ports.

Full Access
Question # 5

Which two agents can validate endpoint compliance transparently to the end user? (Choose two.)

A.

Dissolvable

B.

Mobile

C.

Passive

D.

Persistent

Full Access
Question # 6

Where are logical network values defined?

A.

In the model configuration view of each infrastructure device

B.

In the port properties view of each port

C.

On the profiled devices view

D.

In the security and access field of each host record

Full Access
Question # 7

An administrator is configuring FortiNAC to manage FortiGate VPN users. As part of the configuration, the administrator must configure a few FortiGate firewall policies.

What is the purpose of the FortiGate firewall policy that applies to unauthorized VPN clients?

A.

To deny access to only the production DNS server

B.

To allow access to only the FortiNAC VPN interface

C.

To allow access to only the production DNS server

D.

To deny access to only the FortiNAC VPN interface

Full Access
Question # 8

An administrator wants the Host At Risk event to generate an alarm. What is used to achieve this result?

A.

A security trigger activity

B.

A security filter

C.

An event to alarm mapping

D.

An event to action mapping

Full Access
Question # 9

Which three are components of a security rule? (Choose three.)

A.

Methods

B.

Security String

C.

Trigger

D.

User or host profile

E.

Action

Full Access
Question # 10

Refer to the exhibit.

Considering the host status of the two hosts connected to the same wired port, what will happen if the port is a member of the Forced Registration port group?

A.

The port will be provisioned for the normal state host, and both hosts will have access to that VLAN.

B.

The port will not be managed, and an event will be generated.

C.

The port will be provisioned to the registration network, and both hosts will be isolated.

D.

The port will be administratively shut down.

Full Access
Question # 11

Which two policy types can be created on a FortiNAC Control Manager? (Choose two.)

A.

Authentication

B.

Network Access

C.

Endpoint Compliance

D.

Supplicant EasvConnect

Full Access
Question # 12

Which agent can receive and display messages from FortiNAC to the end user?

A.

Dissolvable

B.

Persistent

C.

Passive

D.

MDM

Full Access
Question # 13

Where do you look to determine when and why the FortiNAC made an automated network access change?

A.

The Event view

B.

The Port Changes view

C.

The Connections view

D.

The Admin Auditing view

Full Access
Question # 14

Where do you look to determine which network access policy, if any is being applied to a particular host?

A.

The Policy Details view for the host

B.

The Connections view

C.

The Port Properties view of the hosts port

D.

The Policy Logs view

Full Access