★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW NSE5 Exam Dumps (PDF & VCE):
Available on: https://www.certleader.com/NSE5-dumps.html


Exambible is the best choice to suit your needs to take your Fortinet Fortinet NSE5 certification test. Fortinet NSE5 study guide will help you to make complete use of our own NSE5 online mind dumps. You can require a Fortinet sample test prior to you buy it and have an instantaneous access to free downloadable Fortinet Fortinet NSE5 certification practice dumps right after purchase! Begin right now by using the NSE5 test motor to have a look at whether as well as not youve got full comprehension of Fortinet Fortinet certification assessment and can help make right choice. Youll make complete preparation for the Fortinet NSE5 exam by taking benefit of our most recent Fortinet Fortinet NSE5 certification exam.

2021 Feb NSE5 actual test

Q91. - (Topic 3) 

Which of the following statements is not correct regarding virtual domains (VDOMs)? 

A. VDOMs divide a single FortiGate unit into two or more virtual units that function as multiple, independent units. 

B. A management VDOM handles SNMP, logging, alert email, and FDN-based updates. 

C. A backup management VDOM will synchronize the configuration from an active management VDOM. 

D. VDOMs share firmware versions, as well as antivirus and IPS databases. 

E. Only administrative users with a super_admin profile will be able to enter all VDOMs to make configuration changes. 

Answer:


Q92. - (Topic 1) 

Which of the following network protocols can be used to access a FortiGate unit as an administrator? 

A. HTTPS, HTTP, SSH, TELNET, PING, SNMP 

B. FTP, HTTPS, NNTP, TCP, WINS 

C. HTTP, NNTP, SMTP, DHCP 

D. Telnet, FTP, RLOGIN, HTTP, HTTPS, DDNS 

E. Telnet, UDP, NNTP, SMTP 

Answer:


Q93. - (Topic 2) 

In HA, what is the effect of the Disconnect Cluster Member command as given in the Exhibit. 

A. The HA mode changes to standalone. 

B. Port3 is configured with an IP address for management access. 

C. The Firewall rules are purged on the disconnected unit. 

D. All other interface IP settings are maintained. 

Answer: A,B 


Q94. - (Topic 1) 

Which of the following Fortinet products can receive updates from the FortiGuard Distribution Network? (Select all that apply.) 

A. FortiGate 

B. FortiClient 

C. FortiMail 

D. FortiAnalyzer 

Answer: A,B,C 


Q95. - (Topic 3) 

The FortiGate Server Authentication Extensions (FSAE) provide a single sign on solution to authenticate users transparently to a FortiGate unit using credentials stored in Windows Active Directory. 

Which of the following statements are correct regarding FSAE in a Windows domain environment when NTLM is not used? (Select all that apply.) 

A. An FSAE Collector Agent must be installed on every domain controller. 

B. An FSAE Domain Controller Agent must be installed on every domain controller. 

C. The FSAE Domain Controller Agent will regularly update user logon information on the FortiGate unit. 

D. The FSAE Collector Agent will retrieve user information from the Domain Controller Agent and will send the user logon information to the FortiGate unit. 

E. For non-domain computers, an FSAE client must be installed on the computer to allow FSAE authentication. 

Answer: B,D 


Far out NSE5 practice question:

Q96. - (Topic 1) 

Which of the following statements is correct regarding a FortiGate unit operating in NAT/Route mode? 

A. The FortiGate unit applies NAT to all traffic. 

B. The FortiGate unit functions as a Layer 3 device. 

C. The FortiGate unit functions as a Layer 2 device. 

D. The FortiGate unit functions as a router and the firewall function is disabled. 

Answer:


Q97. - (Topic 3) 

The transfer of encrypted files or the use of encrypted protocols between users and servers on the internet can frustrate the efforts of administrators attempting to monitor traffic passing through the FortiGate unit and ensuring user compliance to corporate rules. 

Which of the following items will allow the administrator to control the transfer of encrypted data through the FortiGate unit? (Select all that apply.) 

A. Encrypted protocols can be scanned through the use of the SSL proxy. 

B. DLP rules can be used to block the transmission of encrypted files. 

C. Firewall authentication can be enabled in the firewall policy, preventing the use of encrypted communications channels. 

D. Application control can be used to monitor the use of encrypted protocols; alerts can be sent to the administrator through email when the use of encrypted protocols is attempted. 

Answer: A,B,D 


Q98. - (Topic 2) 

Review the IPsec phase1 configuration in the Exhibit shown below; then answer the question following it. 

Which of the following statements are correct regarding this configuration? (Select all that apply). 

A. The phase1 is for a route-based VPN configuration. 

B. The phase1 is for a policy-based VPN configuration. 

C. The local gateway IP is the address assigned to port1. 

D. The local gateway IP address is 10.200.3.1. 

Answer: A,C 


Q99. - (Topic 1) 

Which of the following are valid components of the Fortinet Server Authentication Extensions (FSAE)? (Select all that apply.) 

A. Domain Local Security Agent. 

B. Collector Agent. 

C. Active Directory Agent. 

D. User Authentication Agent. 

E. Domain Controller Agent. 

Answer: B,E 


Q100. - (Topic 1) 

Alert emails enable the FortiGate unit to send email notifications to an email address upon detection of a pre-defined event type. Which of the following are some of the available event types in Web Config? (Select all that apply.) 

A. Intrusion detected. 

B. Successful firewall authentication. 

C. Oversized file detected. 

D. DHCP address assigned. 

E. FortiGuard Web Filtering rating error detected. 

Answer: