Exam : FCSS_NST_SE-7.6
Title : FCSS - Network Security
7.6 Support Engineer
https://www.passcert.com/FCSS_NST_SE-7.6.html
1/6
, Download Valid Fortinet FCSS_NST_SE-7.6 Exam Dumps for Best Preparation
1.Consider the scenario where the server name indication (SNI) does not match either the common name
(CN) or any of the subject alternative names (SAN) in the server certificate.
Which action will FortiGate take when using the default settings for SSL certificate inspection?
A. FortiGate uses the SNI from the user's web browser.
B. FortiGate closes the connection because this represents an invalid SSL/TLS configuration.
C. FortiGate uses the first entry listed in the SAN field in the server certificate.
D. FortiGate uses the CN information from the Subject field in the server certificate.
Answer: D
2.Exhibit.
Refer to the exhibit, which contains partial output from an IKE real-time debug.
Which two statements about this debug output are correct? (Choose two.)
A. Perfect Forward Secrecy (PFS) is enabled in the configuration.
B. The local gateway IP address is 10.0.0.1.
C. It shows a phase 2 negotiation.
D. The initiator provided remote as its IPsec peer ID.
Answer: C, D
3.Exhibit.
2/6