New Year Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70percent

Fortinet NSE6_WCS-6.4 Fortinet NSE 6 - Securing AWS With Fortinet Cloud Security 6.4 Exam Practice Test

Demo: 4 questions
Total 30 questions

Fortinet NSE 6 - Securing AWS With Fortinet Cloud Security 6.4 Questions and Answers

Question 1

An organization has created a VPC and deployed a FortiGate-VM (VM04 /c4.xlarge) in AWS, FortiGate-VM is initially configured With two Elastic Network Interfaces

(ENIs). The primary ENI of FortiGate-VM is configured for a public subnet. and the second ENI is configured for a private subnet. In order to provide internet access. they now want to add an EIP to the primary ENI of FortiGate, but the EIP assignment is failing.

Which action would allow the EIP assignment to be successful?

Options:

A.

Shut down the FortiGate VM. if it is running. assign the EIP to the primary ENI. and then power it on.

B.

Create and associate a public subnet With the primary ENI Of FortiGate, and then assign the EIP to the primary ENI.

C.

Create and attach a public routing table to the public subnet, associate the public subnet With the primary ENI Of FortiGate. and then assign the EP to the primary ENI.

D.

Create and attach an Internet gateway to the VPC. and then assign the EIP to the primary ENI Of FortiGate.

Question 2

Which three statements are correct about AWS security groups? (Choose three)

Options:

A.

a Security group rules are always permissive: you cannot create rules that deny access.

B.

By default, security groups block all outbound traffic.

C.

When associate multiple security groups With an instance, the rules from each security group are effectively aggregated to create one set Of rules

D.

Security groups are statetul

E.

By default,security groups allow all inbound traffic.

Question 3

Refer to the exhibit.

A customer is using the AWS Elastic Load Balancer.

Which two statements are correct about the Elastic LoadBalancer configuration? (Choose two.)

Options:

A.

The Amazon resource name is used to access the load balancer node and targets.

B.

The DNS name is used to access devices.

C.

The load balancer is configured to load balance traffic between devices in two AZS.

D.

The load balancer is configuredfor the internal traffic oftheVPC

Question 4

As part of the security plan you have been tasked with deploying a FortiGate in AWS.

Which two are the security responsibility of the customer in a cloud environment? (Choose two.)

Options:

A.

Virtualization platform

B.

Traffic encryption

C.

User management

D.

Storage infrastructure

Demo: 4 questions
Total 30 questions