Winter Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: v4s65

Note! Following NSE7_PBC-6.4 Exam is Retired now. Please select the alternative replacement for your Exam Certification. The new exam code is NSE7_PBC-7.2

NSE7_PBC-6.4 Exam Dumps - Fortinet NSE 7 - Public Cloud Security 6.4

Go to page:
Question # 4

You have been tasked with deploying FortiGate VMs in a highly available topology on the Amazon Web Services (AWS) cloud. The requirements for your deployment are as follows:

•You must deploy two FortiGate VMs in a single virtual private cloud (VPC), with an external elastic load balancer which will distribute ingress traffic from the internet to both FortiGate VMs in an active-active topology.

•Each FortiGate VM must have two elastic network interfaces: one will connect to a public subnet and other will connect to a private subnet.

•To maintain high availability, you must deploy the FortiGate VMs in two different availability zones.

How many public and private subnets will you need to configure within the VPC?

A.

One public subnet and two private subnets

B.

Two public subnets and one private subnet

C.

Two public subnets and two private subnets

D.

One public subnet and one private subnet

Full Access
Question # 5

A company deployed a FortiGate-VM with an on-demand license using Amazon Web Services (AWS) Market Place Cloud Formation template. After deployment, the administrator cannot remember the default admin password.

What is the default admin password for the FortiGate-VM instance?

A.

The admin password cannot be recovered and the customer needs to deploy the FortiGate-VM again.

B.

C.

admin

D.

The instance-ID value

Full Access
Question # 6

You have been asked to secure your organization’s salesforce application that is running on Microsoft Azure, and find an effective method for inspecting shadow IT activities in the organization. After an initial investigation, you find that many users access the salesforce application remotely as well as on-premises.

Your goal is to find a way to get more visibility, control over shadow IT-related activities, and identify any data leaks in the salesforce application.

Which three steps should you take to achieve your goal? (Choose three.)

A.

Deploy and configure FortiCASB with a Fortinet FortiCASB subscription license.

B.

Configure FortiCASB and set up access rights, privileges, and data protection policies.

C.

Use FortiGate, FortiGuard, and FortiAnalyzer solutions.

D.

Deploy and configure FortiCWP with a workload guardian license.

E.

Deploy and configure FortiGate with Security Fabric solutions, and FortiCWP with a storage guardian advance license.

Full Access
Question # 7

An organization deploys a FortiGate-VM (VM04 / c4.xlarge) in Amazon Web Services (AWS) and configures two elastic network interfaces (ENIs). Now, the same organization wants to add additional ENIs to support different workloads in their environment.

Which action can you take to accomplish this?

A.

None, you cannot create and add additional ENIs to an existing FortiGate-VM.

B.

Create the ENI, shut down FortiGate, attach the ENI to FortiGate, and then start FortiGate.

C.

Create the ENI, attach it to FortiGate, and then restart FortiGate.

D.

Create the ENI and attach it to FortiGate.

Full Access
Question # 8

Which two statements about Microsoft Azure network security groups are true? (Choose two.)

A.

Network security groups can be applied to subnets and virtual network interfaces.

B.

Network security groups can be applied to subnets only.

C.

Network security groups are stateless inbound and outbound rules used for traffic filtering.

D.

Network security groups are a stateful inbound and outbound rules used for traffic filtering.

Full Access
Go to page: