QUESTION 129Caching improves performance by reducing FortiGate unit requests to the FortiGuard server.Which of the following statements are correct regarding the caching of FortiGuard responses? (Select all that apply.)A. Caching is available for web filtering, antispam, and IPS requests.B. The cache uses a small portion of the FortiGate system memory.C. When the cache is full, the least recently used IP address or URL is deleted from the cache.D. An administrator can configure the number of seconds to store information in the cache before the FortiGate unit contacts the FortiGuard server again.E. The size of the cache will increase to accomodate any number of cached queries.Answer: BCDQUESTION 130Which of the following Fortinet products can receive updates from the FortiGuard Distribution Network? (Select all that apply.)A. FortiGateB. FortiClientC. FortiMailD. FortiAnalyzerAnswer: ABCQUESTION 131How can DLP file filters be configured to detect Office 2010 files? (Select all that apply.)A. File TypE. Microsoft Office(msoffice)B. File TypE. Archive(zip)C. File TypE. Unknown Filetype(unknown)D. File NamE. "*.ppt", "*.doc", "*.xls"E. File NamE. "*.pptx", "*.docx", "*.xlsx"Answer: BEQUESTION 132What are the valid sub-types for a Firewall type policy? (Select all that apply)A. Device IdentityB. AddressC. User IdentityD. ScheduleE. SSL VPNAnswer: ABCQUESTION 133In NAT/Route mode when there is no matching firewall policy for traffic to be forwarded by the Firewall, which of the following statements describes the action taken on traffic?A. The traffic is blocked.B. The traffic is passed.C. The traffic is passed and logged.D. The traffic is blocked and logged.Answer: AQUESTION 134In which order are firewall policies processed on the FortiGate unit?A. They are processed from the top down according to their sequence number.B. They are processed based on the policy ID number shown in the left hand column of the policy window.C. They are processed on best match.D. They are processed based on a priority value assigned through the priority column in the policy window.Answer: AQUESTION 135Which of the following pieces of information can be included in the Destination Address field of a firewall policy? (Select all that apply.)A. An IP address pool.B. A virtual IP address.C. An actual IP address or an IP address group.D. An FQDN or Geographic value(s).Answer: BCDQUESTION 136The ordering of firewall policies is very important. Policies can be re-ordered within the FortiGate unit's GUI and also using the CLI. The command used in the CLI to perform this function is ______ .A. set orderB. edit policyC. reorderD. moveAnswer: DQUESTION 137You wish to create a firewall policy that applies only to traffic intended for your web server. The web server has an IP address of and a /24 subnet mask. When defining the firewall address for use in this policy, which one of the following addresses is correct?A. / / / / DQUESTION 138A FortiAnalyzer device could use which security method to secure the transfer of log data from FortiGate devices?A. SSLB. IPSecC. direct serial connectionD. S/MIMEAnswer: BQUESTION 139Which of the following network protocols are supported for administrative access to a FortiGate unit?A. HTTPS, HTTP, SSH, TELNET, PING, SNMPB. FTP, HTTPS, NNTP, TCP, WINSC. HTTP, NNTP, SMTP, DHCPD. Telnet, FTP, RLOGIN, HTTP, HTTPS, DDNSE. Telnet, UDP, NNTP, SMTPAnswer: A