Summer Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmas50

Fortinet NSE5_FNC_AD_7.6 - Fortinet NSE 5 - FortiNAC-F 7.6 Administrator

Page: 1 / 2
Total 59 questions

When configuring isolation networks in the configuration wizard, why does a layer 3 network typo allow for mora than ono DHCP scope for each isolation network typo?

A.

The layer 3 network type allows for one scope for each possible host status.

B.

Configuring more than one DHCP scope allows for DHCP server redundancy

C.

There can be more than one isolation network of each type

D.

Any scopes beyond the first scope are used if the initial scope runs out of IP addresses.

A healthcare organization is integrating FortiNAC-F with its existing MDM. Communication is failing between the systems.

What could be a probable cause?

A.

Security Fabric traffic is failing

B.

SSH communication is failing

C.

REST API communication is failing

D.

SOAP API communication is failing

Refer to the exhibit.

An administrator is configuring FortiNAC-F (or the onboarding of guest users. Which IP address would be used for the gateway defined in the DHCP scope?

A.

10.0.1.254

B.

10.0.1.110

C.

10.10.1.250

D.

10.20.1.250

In which three ways would deploying a FortiNAC-F Manager into a large environment consisting of several FortiNAC-F CAs simplify management? (Choose three.)

A.

Global infrastructure device inventory

B.

Global version control

C.

Global authentication security policies

D.

Pooled licenses

E.

Global visibility

An administrator has created several device profiling rules and evaluated all existing devices in the database. Some of the devices appear in the profiled devices view because they matched a rule, but they remain unknown and the registration column in the profiled devices view shows " No " .

What is the most likely cause?

A.

The confirm device profiling rule option is not enabled.

B.

The devices match more than one device profiling rule.

C.

The device profiling rule has registration set to manual.

D.

The devices have persistent agents installed, and the point of connection has PA optimization enabled.

While troubleshooting a network connectivity issue, an administrator determines that a device was being automatically provisioned to an incorrect VLAN. Where would the administrator look to identify when and why FortiNAC-F made the network access change?

A.

The Security Event view

B.

The Reports view

C.

The Port Changes view

D.

The Admin Auditing view

Where should you configure MAC notification traps on a supported switch?

A.

Only on ports that generate linkup and linkdown traps

B.

Only on ports defined as learned uplinks

C.

On all ports on the switch

D.

On all ports except uplink ports

Which two statements are true about integrating a third-party device using SNMP traps from that device as input to generate an event? (Choose two.)

A.

The sending device must be modeled in the inventory topology.

B.

The sending device must support SNMPv3.

C.

set allowaccess snmp must be configured using the CLI on the FortiNAC-F receiving interface.

D.

The IP address OID and MAC address OID must be configured in the trap MIB file.

Refer to the exhibits.

Based on the given configurations and settings, on which date and time would a guest account created at 8:00 AM on 2025/09/12 expire?

A.

2025/09/12 at 8:00 PM

B.

2025/09/12 at 7:00 PM

C.

2025/09/12 at 17:00:00

D.

2025/09/13 at 17:00:00

Refer to the exhibit.

A FortiNAC-F N+1 HA configuration is shown.

What will occur if CA-2 fails?

A.

CA-1 and CA-3 will operate as a 1+1 HA cluster with CA-3 acting as a hot standby.

B.

CA-3 will continue to operate as a secondary in an N+1 HA configuration.

C.

CA-3 will be promoted to a primary and share management responsibilities with CA-1.

D.

CA-3 will be promoted to a primary and FortiNAC-F manager will load balance between CA-1 and CA-3.