Comprehensive Network Security Solution Exam / NSE8 Dumps / NSE8 Exam Questions / NSE8 PDF Dumps / NSE8 VCE Dumps

Fortinet Network Security Expert NSE8 Exam Questions with VCE and PDF for Free Download from PassLeader (Question 26 – Question 30)

PassLeader just published the NEWEST Fortinet NSE8 exam dumps! And, PassLeader offer two types of the NSE8 dumps — NSE8 VCE dumps and NSE8 PDF dumps, both VCE and PDF contain the NEWEST NSE8 exam questions, they will help you PASSING the Fortinet NSE8 exam easily! Now, get the NEWEST NSE8 dumps in VCE and PDF from PassLeaderhttp://www.passleader.com/nse8.html (70 Q&As Dumps)

What’s more, part of that PassLeader NSE8 dumps now are freehttps://drive.google.com/open?id=0B-ob6L_QjGLpN0wyemxuQTI1UTA

QUESTION 26
You have implemented FortiGate on transparent mode as shown on the exhibit. User1 from the Internet is trying to access the 192.168.10.10 Web servers. Which two statements about this scenario are true? (Choose two.)
passleader-nse8-dumps-261

A.    User1 would be able to access the Web server intermittently.
B.    User1 would not be able to access any of the Web servers at all.
C.    FortiGate learns Web servers MAC address when the Web servers transmit packets.
D.    FortiGate always flood packets to both Web servers at the same time.

Answer: AC

QUESTION 27
You implemented FortiGate in transparent mode with 10 different VLAN interfaces in the same forwarding domain. You have defined a policy to allow traffic from any interface to any interface. Which statement about your implementation is true?

A.    FortiGate populates the MAC address table based on destination addresses of frames received from all10 VLANs.
B.    There will be no impact on the STP protocol.
C.    All10 VLANs will become a single broadcast domain for the ARP request.
D.    The ARP request will not be forwarded across the different VLANs domains.

Answer: C

QUESTION 28
A customer wants to implement a RADIUS Single Sign On (RSSO) solution for multiple FortiGate devices. The customer’s network already includes a RADIUS server that can generate the logon and logoff accounting records. However, the RADIUS server can send those records to only one destination. What should the customer do to overcome this limitation?

A.    Send the RADIUS records to an LDAP server and add the LDAP server to the FortiGate configuration.
B.    Send the RADIUS records to an RSSO Collector Agent.
C.    Send the RADIUS records to one of the FortiGate devices, which can replicate them to the other FortiGate units.
D.    Use the RADIUS accounting proxy feature available in FortiAuthenticator devices.

Answer: B

QUESTION 29
Which two features are supported only by FortiMail but not by FortiGate? (Choose two.)

A.    DNSBL
B.    built-in MTA
C.    end-to-end IBE encryption
D.    FortiGuard Antispam

Answer: AB

QUESTION 30
Examine the two static routes to the same destination subnet 172.20.168.0/24 as shown below; then answer the question following it.
config router static
edit 1
set dst 172.20.168.0 255.255.255.0
set distance 20
set priority 10
set device port1
next
edit 2
set dst 172.20.168.0 255.255.255.0
set distance 20
set priority 20
set device port2
next
end
Which of the following statements correctly describes the static routing configuration provided above?

A.    The FortiGate evenly shares the traffic to 172.20.168.0/24 through both routes.
B.    The FortiGate shares the traffic to 172.20.168.0/24 through both routes, but the port2 route will carry approximately twice as much of the traffic.
C.    The FortiGate sends all the traffic to 172.20.168.0/24 through port1.
D.    Only the route that is using port1 will show up in the routing table.

Answer: C


Learning the PassLeader NSE8 dumps with VCE and PDF for 100% passing Fortinet certificationhttp://www.passleader.com/nse8.html (70 Q&As Dumps)

BONUS!!! Download part of PassLeader NSE8 dumps for freehttps://drive.google.com/open?id=0B-ob6L_QjGLpN0wyemxuQTI1UTA