PassLeader just published the NEWEST Fortinet NSE6 exam dumps! And, PassLeader offer two types of the NSE6 dumps — NSE6 VCE dumps and NSE6 PDF dumps, both VCE and PDF contain the NEWEST NSE6 exam questions, they will help you PASSING the Fortinet NSE6 exam easily! Now, get the NEWEST NSE6 dumps in VCE and PDF from PassLeader — http://www.passleader.com/nse6.html (145 Q&As Dumps)
What’s more, part of that PassLeader NSE6 dumps now are free — https://drive.google.com/open?id=0B-ob6L_QjGLpX0pDRzN5bDJDMTQ
QUESTION 21
Which of the following IKE modes is the one used during the IPsec phase 2 negotiation?
A. Aggressive mode
B. Quick mode
C. Main mode
D. Fast mode
Answer: B
QUESTION 22
Which of the following statements are true about IPsec VPNs? (Choose three.)
A. IPsec increases overhead and bandwidth.
B. IPsec operates at the layer 2 of the OSI model.
C. End-user’s network applications must be properly pre-configured to send traffic across the IPsec VPN.
D. IPsec protects upper layer protocols.
E. IPsec operates at the layer 3 of the OSI model.
Answer: ADE
QUESTION 23
What is longest length of time allowed on a FortiGate device for the virus scan to complete?
A. 20 seconds
B. 30 seconds
C. 45 seconds
D. 10 seconds
Answer: B
QUESTION 24
Which of the following statements is true regarding the TCP SYN packets that go from a client, through an implicit web proxy (transparent proxy), to a web server listening at TCP port 80? (Choose three.)
A. The source IP address matches the client IP address.
B. The source IP address matches the proxy IP address.
C. The destination IP address matches the proxy IP address.
D. The destination IP address matches the server IP addresses.
E. The destination TCP port number is 80.
Answer: ADE
QUESTION 25
Which of the following statements is true regarding the use of a PAC file to configure the web proxy settings in an Internet browser? (Choose two.)
A. More than one proxy is supported.
B. Can contain a list of destinations that will be exempt from the use of any proxy.
C. Can contain a list of URLs that will be exempted from the FortiGate web filtering inspection.
D. Can contain a list of users that will be exempted from the use of any proxy.
Answer: BC
QUESTION 26
An Internet browser is using the WPAD DNS method to discover the PAC file’s URL. The DNS server replies to the browser’s request with the IP address 10.100.1.10. Which URL will the browser use to download the PAC file?
A. http://10.100.1.10/proxy.pac
B. https://10.100.1.10/
C. http://10.100.1.10/wpad.dat
D. https://10.100.1.10/proxy.pac
Answer: C
QUESTION 27
Alert emails enable the FortiGate unit to send email notifications to an email address upon detection of a pre-defined event type. Which of the following are some of the available event types in Web Config? (Select all that apply.)
A. Intrusion detected.
B. Successful firewall authentication.
C. Oversized file detected.
D. DHCP address assigned.
E. FortiGuard Web Filtering rating error detected.
Answer: A
QUESTION 28
Which two web filtering inspection modes inspect the full URL? (Choose two.)
A. DNS-based.
B. Proxy-based.
C. Flow-based.
D. URL-based.
Answer: BC
QUESTION 29
Which protocol can an Internet browser use to download the PAC file with the web proxy configuration?
A. HTTPS
B. FTP
C. TFTP
D. HTTP
Answer: D
QUESTION 30
Which are the three different types of Conserve Mode that can occur on a FortiGate device? (Choose three.)
A. Proxy
B. Operating system
C. Kernel
D. System
E. Device
Answer: ACD
Learning the PassLeader NSE6 dumps with VCE and PDF for 100% passing Fortinet certification — http://www.passleader.com/nse6.html (145 Q&As Dumps)
BONUS!!! Download part of PassLeader NSE6 dumps for free — https://drive.google.com/open?id=0B-ob6L_QjGLpX0pDRzN5bDJDMTQ