Fortinet NSE8_812

Page:    1 / 12   
Total 60 questions | Updated On: Apr 24, 2024
Question 1

Refer to the exhibit.

NSE8-812-page89-image62
A FortiWeb appliance is configured for load balancing web sessions to internal web servers. The Server Pool
is configured as shown in the exhibit.
How will the sessions be load balanced between server 1 and server 2 during normal operation?


Answer: D
Question 2

Refer to the exhibits.

NSE8-812-page89-image47
A FortiGate cluster (CL-1) protects a data center hosting multiple web applications. A pair of FortiADC
devices are already configured for SSL decryption (FAD-1), and re-encryption (FAD-2). CL-1 must accept
unencrypted traffic from FAD-1, perform application detection on the plain-text traffic, and forward the
inspected traffic to FAD-2.
The SSL-Offload-App-Detect application list and SSL-Offload protocol options profile are applied to the
firewall policy handling the web application traffic on CL-1.
Given this scenario, which two configuration tasks must the administrator perform on CL-1? (Choose two.)


Answer: B,C
Question 3

Refer to the exhibit.

NSE8-812-page89-image2The exhibit shows the forensics analysis of an event detected by the FortiEDR core
In this scenario, which statement is correct regarding the threat?


Answer: D
Question 4

Refer to the exhibit.

NSE8-812-page89-image82
You are operating an internal network with multiple OSPF routers on the same LAN segment. FGT_3 needs to
be added to the OSPF network and has the configuration shown in the exhibit. FGT_3 is not establishing any
OSPF connection.
What needs to be changed to the configuration to make sure FGT_3 will establish OSPF neighbors without
affecting the DR/BDR election?


Answer: B
Question 5

Refer to the exhibit.

NSE8-812-page89-image101
To facilitate a large-scale deployment of SD-WAN/ADVPN with FortiGate devices, you are tasked with
configuring the FortiGate devices to support injecting of IKE routes on the ADVPN shortcut tunnels.
Which three commands must be added or changed to the FortiGate spoke config vpn ipsec phasei-interface
options referenced in the exhibit for the VPN interface to enable this capability? (Choose three.)


Answer: A,D
Page:    1 / 12   
Total 60 questions | Updated On: Apr 24, 2024

Quickly grab our NSE8_812 product now and kickstart your exam preparation today!

Name: Fortinet NSE 8 - Written Exam (NSE8_812)
Exam Code: NSE8_812
Certification: NSE 8 Network Security Expert
Vendor: Fortinet
Total Questions: 60
Last Updated: Apr 24, 2024