Question 81

An administrator is configuring an IPsec VPN between site A and site B.
The Remote Gateway setting in both sites has been configured as Static IP Address. For site A, the local quick mode selector is 192.168.1.0/24 and the remote quick mode selector is 192.168.2.0/24.
Which subnet must the administrator configure for the local quick mode selector for site B?
  • Question 82

    Refer to the exhibit, which shows the IPS sensor configuration.

    If traffic matches this IPS sensor, which two actions is the sensor expected to take? (Choose two.)
  • Question 83

    A network administrator enabled antivirus and selected an SSL inspection profile on a firewall policy.
    When downloading an EICAR test file through HTTP, FortiGate detects the virus and blocks the file. When downloading the same file through HTTPS, FortiGate does not detect the and does not block the file allowing it to be downloaded.
    The administrator confirms that the traffic matches the configured firewall policy.
    What are two reasons for the failed virus detection by FortiGate? (Choose two.)
  • Question 84

    Refer to the exhibit.

    Which statement about this firewall policy list is true?
  • Question 85

    Which two statements correctly describe the differences between IPsec main mode and IPsec aggressive mode? (Choose two.)