A network administrator has enabled full SSL inspection and web filtering on FortiGate. When visiting any HTTPS websites, the browser reports certificate warning errors. When visiting HTTP websites, the browser does not report errors.
What is the reason for the certificate warning errors?
108
Which statement about the IP authentication header (AH) used by IPsec is true?
Refer to the exhibit.
The exhibit shows the IPS sensor configuration.
If traffic matches this IPS sensor, which two actions is the sensor expected to take? (Choose two.)
Refer to the exhibit.
Given the routing database shown in the exhibit, which two statements are correct? (Choose two.)
What is the limitation of using a URL list and application control on the same firewall policy, in NGFW policy-based mode?
FortiGate is operating in NAT mode and is configured with two virtual LAN (VLAN) subinterfaces added to the same physical interface.
In this scenario, what are two requirements for the VLAN ID? (Choose two.)
44
Which statement about the policy ID number of a firewall policy is true?
Refer to the exhibit.
The Root and To_Internet VDOMs are configured in NAT mode. The DMZ and Local VDOMs are configured in transparent mode.
The Root VDOM is the management VDOM. The To_Internet VDOM allows LAN users to access the internet. The To_Internet VDOM is the only VDOM with internet access and is directly connected to ISP modem .
With this configuration, which statement is true?
The IPS engine is used by which three security features? (Choose three.)
Which three criteria can a FortiGate use to look for a matching firewall policy to process traffic? (Choose three.)