2022年09月実際に出るNSE7_OTS-6.4試験問題集には正確で更新された問題 [Q16-Q40]

Share

2022年09月実際に出るNSE7_OTS-6.4試験問題集には正確で更新された問題

NSE7_OTS-6.4試験問題集でPDF問題とテストエンジン

質問 16
In a wireless network integration, how does FortiNAC obtain connecting MAC address information?

  • A. MAC notification traps
  • B. RADIUS
  • C. Link traps
  • D. End station traffic monitoring

正解: B

 

質問 17
An OT network administrator is trying to implement active authentication.
Which two methods should the administrator use to achieve this? (Choose two.)

  • A. Two-factor authentication on FortiAuthenticator
  • B. Local authentication on FortiGate
  • C. Role-based authentication on FortiNAC
  • D. FSSO authentication on FortiGate

正解: A,C

 

質問 18
What triggers Layer 2 polling of infrastructure devices connected in the network?

  • A. A linkup or linkdown trap
  • B. A failed Layer 3 poll
  • C. A matched profiling rule
  • D. A matched security policy

正解: A

 

質問 19
An OT administrator configured and ran a default application risk and control report in FortiAnalyzer to learn more about the key application crossing the network. However, the report output is empty despite the fact that some related real-time and historical logs are visible in the FortiAnalyzer.
What are two possible reasons why the report output was empty? (Choose two.)

  • A. The administrator selected the wrong hcache table for the report.
  • B. The administrator selected the wrong devices in the Devices section.
  • C. The administrator selected the wrong time period for the report.
  • D. The administrator selected the wrong logs to be indexed in FortiAnalyzer.

正解: A,C

 

質問 20
Refer to the exhibit and analyze the output.

Which statement about the output is true?

  • A. This is a sample of FortiGate interface statistics.
  • B. This is a sample of an SNMP temperature control event log.
  • C. This is a sample of a PAM event type.
  • D. This is a sample of a FortiAnalyzer system interface event log.

正解: D

 

質問 21
As an OT administrator, it is important to understand how industrial protocols work in an OT network.
Which communication method is used by the Modbus protocol?

  • A. It uses OSI Layer 2 and both the primary/secondary devices always send data during the communication.
  • B. It uses OSI Layer 2 and both the primary/secondary devices send data based on a matching token ring.
  • C. It uses OSI Layer 2 and the secondary device sends data based on request from primary device.
  • D. It uses OSI Layer 2 and the primary device sends data based on request from secondary device.

正解: C

 

質問 22
Which three Fortinet products can be used for device identification in an OT industrial control system (ICS)? (Choose three.)

  • A. FortiGate
  • B. FortiNAC
  • C. FortiAnalyzer
  • D. FortiSIEM
  • E. FortiManager

正解: B,C,D

 

質問 23
An OT administrator has configured FSSO and local firewall authentication. A user who is part of a user group is not prompted from credentials during authentication.
What is a possible reason?

  • A. FortiGate determined the user by passive authentication
  • B. The user was determined by Security Fabric
  • C. FortiNAC determined the user by DHCP fingerprint method
  • D. Two-factor authentication is not configured with RADIUS authentication method

正解: C

 

質問 24
An OT supervisor has configured LDAP and FSSO for the authentication. The goal is that all the users be authenticated against passive authentication first and, if passive authentication is not successful, then users should be challenged with active authentication.
What should the OT supervisor do to achieve this on FortiGate?

  • A. Enable two-factor authentication with FSSO.
  • B. Under config user settings configure set auth-on-demand implicit.
  • C. Configure a firewall policy with FSSO users and place it on the top of list of firewall policies.
  • D. Configure a firewall policy with LDAP users and place it on the top of list of firewall policies.

正解: B

 

質問 25
Which three methods of communication are used by FortiNAC to gather visibility information? (Choose three.)

  • A. SNMP
  • B. TACACS
  • C. API
  • D. RADIUS
  • E. ICMP

正解: A,C,D

 

質問 26
Refer to the exhibit.

Given the configurations on the FortiGate, which statement is true?

  • A. FortiGate is configured with forward-domains to filter and drop non-domain controller traffic.
  • B. FortiGate is configured with forward-domains to forward only domain controller traffic.
  • C. FortiGate is configured with forward-domains to reduce unnecessary traffic.
  • D. FortiGate is configured with forward-domains to forward only company domain website traffic.

正解: C

 

質問 27
An OT architect has deployed a Layer 2 switch in the OT network at Level 1 the Purdue model-process control. The purpose of the Layer 2 switch is to segment traffic between PLC1 and PLC2 with two VLANs. All the traffic between PLC1 and PLC2 must first flow through the Layer 2 switch and then through the FortiGate device in the Level 2 supervisory control network.
What statement about the traffic between PLC1 and PLC2 is true?

  • A. PLC1 and PLC2 traffic must flow through the Layer-2 switch trunk link to the FortiGate device.
  • B. The Layer 2 switch rewrites VLAN tags before sending traffic to the FortiGate device.
  • C. The Layer 2 switches routes any traffic to the FortiGate device through an Ethernet link.
  • D. In order to communicate, PLC1 must be in the same VLAN as PLC2.

正解: A

 

質問 28
Refer to the exhibit.

Which statement about the interfaces shown in the exhibit is true?

  • A. port1, port1-vlan10, and port1-vlan1 are in different broadcast domains
  • B. port2, port2-vlan10, and port2-vlan1 are part of the software switch interface.
  • C. The VLAN ID of port1-vlan1 can be changed to the VLAN ID 10.
  • D. port1-vlan10 and port2-vlan10 are part of the same broadcast domain

正解: A

 

質問 29
What are two benefits of a Nozomi integration with FortiNAC? (Choose two.)

  • A. Importation and classification of hosts
  • B. Adapter consolidation for multi-adapter hosts
  • C. Direct VLAN assignment
  • D. Enhanced point of connection details

正解: C,D

 

質問 30
......

合格させるFortinet NSE7_OTS-6.4試験最速合格にはGoShiken:https://www.goshiken.com/Fortinet/NSE7_OTS-6.4-mondaishu.html