Question 131

You receive a FortiAnalyzer alert warning that a 1 TB disk filled up in a day. Upon investigation, you find thousands of unusual DNS log requests, such as JHCMQK.website.com, with no answers. You later discover that DNS exfiltration is occurring through both UDP and TLS. How can you prevent this data theft technique?
  • Question 132

    Refer to the exhibit. The routing tables of FortiGate_A and FortiGate_B are shown. FortiGate_A and FortiGate_B are in the same autonomous system.

    The administrator wants to dynamically add only route 172.16.1.248/30 on FortiGate_A.
    What must the administrator configure?
  • Question 133

    Refer to the exhibit, which shows a network diagram.

    An administrator would like to modify the MED value advertised from FortiGate_1 to a BGP neighbor in the autonomous system 30.
    What must the administrator configure on FortiGate_1 to implement this?
  • Question 134

    Refer to the exhibits.
    Network topology

    Output from the command config system ha

    A network diagram and the output from the command config system ha are shown.
    The administrator has configured the cluster with the commands shown in the exhibit.
    Why is the HA cluster not forming?
  • Question 135

    Refer to the exhibit.

    A LAN interface connected from FortiGate to two FortiSwitch devices is shown.
    Which two statements about the LAN interface connection shown in the exhibit are correct? (Choose two.)