Weekend Special - 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: my75ex

Home > Fortinet > NSE 6 Network Security Specialist > NSE6_FNC_AD-7.6

NSE6_FNC_AD-7.6 Fortinet NSE 6 - FortiNAC-F 7.6 Administrator Question and Answers

Question # 4

Refer to the exhibit.

After a successful layer 2 poll, two hosts were learned on the same port The port is a member of the Role-Based Access and Forced Registration groups. The switch has been configured to leverage a single isolation VLAN.

How will FortiNAC-F manage this port?

A.

The port will be provisioned to the isolation network

B.

The port will be provisioned for the normal state host, but the second host will have access to only the isolation portal page.

C.

The port will be provisioned as an uplink to a hub or unmanaged switch.

D.

The port will be added to the Access Point Management group

Full Access
Question # 5

Two FortiNAC-F devices have been configured as a 1 + 1 HA pair. The primary server went offline and a successful failover to the secondary has occurred. What happens if the primary server comes back online?

A.

The primary and secondary servers will resume communication and the secondary will maintain control.

B.

The secondary server will update the primary and the servers will load balance until an administrator forces the primary to resume full control.

C.

The primary server will determine that the secondary has control and power down for maintenance.

D.

After five successful heartbeats between the servers, the primary server will resume control.

Full Access
Question # 6

An administrator wants to build device profiling rules based on network traffic, but the network session view is not populated with any records.

Which two settings can be enabled to gather network session information? (Choose two.)

A.

Network traffic polling on any modeled infrastructure device

B.

Firewall session polling on modeled FortiGate devices

C.

Netflow setting on the FortiNAC-F interfaces

D.

Layer 3 polling on the infrastructure devices

Full Access
Question # 7

An organization wants to add a FortiNAC-F Manager to simplify their large FortiNAC-F deployment.

Which two policy types can be managed globally? (Choose two.)

A.

Authentication

B.

Endpoint Compliance

C.

Supplicant EasyConnect

D.

Network Access

Full Access
Question # 8

Refer to the exhibits.

Based on the given configurations and settings, on which date and time would a guest account created at 8:00 AM on 2025/09/12 expire?

A.

2025/09/12 at 8:00 PM

B.

2025/09/12 at 7:00 PM

C.

2025/09/12 at 17:00:00

D.

2025/09/13 at 17:00:00

Full Access
Question # 9

Refer to the exhibit.

Given this topology, and a layer 3 registration network configuration, which IP address would be designated in the DHCP relay configuration for the registration network?

A.

192.168.10.254

B.

192.168.100 75

C.

192.168.100.20

D.

192.168.200.10

Full Access
Question # 10

During the testing of a newly modeled infrastructure switch, the administrator is not seeing hosts as they connect or move from one port to another. What would cause this issue?

A.

MAC notification traps are misconfigured.

B.

Layer 3 polling is failing.

C.

The default scheduled polling is disabled.

D.

Contact polling is not configured.

Full Access
Question # 11

Refer to the exhibit.

What would FortiNAC-F generate if only one of the security fitters is satisfied?

A.

A normal alarm

B.

A security event

C.

A security alarm

D.

A normal event

Full Access
Question # 12

An administrator is configuring FortiNAC-F to manage FortiGate VPN users. As part of the configuration, the administrator must configure a few FortiGate firewall policies. What is the purpose of the FortiGate firewall policy that applies to clients not yet authorized by FortiNAC-F? (Choose one answer)

A.

To allow access to only the production DNS server

B.

To allow access to only the production DNS server

C.

To allow access to only the FortiNAC-F VPN interface

D.

To allow access to only the FortiGate VPN interface

Full Access
Question # 13

An administrator wants to create a conference manager administrator account but would like to limit the number of conference accounts that can be generated to 30. Which statement about conference accounts is true?

A.

In FortiNAC-F, conference accounts can be limited by multiples of 25, so the conference administrator could create 50 accounts.

B.

The administrator can set a maximum of 30 conference accounts in the administrative profile for the conference manager.

C.

The conference account limit is defined in the onboarding conference portal.

D.

Conference account limits are defined in the conference guest and contractor template.

Full Access
Question # 14

In which three ways would deploying a FortiNAC-F Manager into a large environment consisting of several FortiNAC-F CAs simplify management? (Choose three.)

A.

Global infrastructure device inventory

B.

Global version control

C.

Global authentication security policies

D.

Pooled licenses

E.

Global visibility

Full Access
Question # 15

Refer to the exhibit.

When configuring guest access using a network access policy, where would an administrator configure the Guest-VLAN value?

A.

In the Model configuration

B.

In the Guest template

C.

In the User/Host profile

D.

in the Guest portal configuration

Full Access
Question # 16

When configuring FortiNAC-F to manage FortiGate VPN users, an endpoint compliance policy must be created for the integration.

Why is the endpoint compliance policy necessary for this type of integration?

A.

To designate the required agent type

B.

To validate the VPN user credentials

C.

To confirm the installed endpoint certificate

D.

To validate the VPN client being used

Full Access
Question # 17

Refer to the exhibit.

An administrator wants to ensure that guest accounts created from this template are not allowed network access outside of the designated times.

To achieve this, all necessary configurations must be made to force isolation of hosts in which state?

A.

At-risk

B.

Disabled

C.

Non-authenticated

D.

Rogue

Full Access
Question # 18

Refer to the output below.

Examine the communication between a primary FortiNAC-F (192.168.10.10) and a secondary FortlNAC-F (192.168.10.110) configured as a 1+1 HA pair. What is the current state of the FortiNAC-F HA pair?

A.

The secondary server is running and in control.

B.

The database replication failed

C.

Failover from the primary server to the secondary server is in progress.

D.

The primary server is running and in control.

Full Access