Fortinet Certified Network Security Administrator (FCNSA.v5) - FCNSA.v5 Exam Practice Test

A FortiGate 60 unit is configured for your small office. The DMZ interface is connected to a network containing a web server and email server. The Internal interface is connected to a network containing 10 user workstations and the WAN1 interface is connected to your ISP.
You want to configure firewall policies so that your users can send and receive email messages to the email server on the DMZ network. You also want the email server to be able to retrieve email messages from an email server hosted by your ISP using the POP3 protocol.
Which policies must be created for this communication? (Select all that apply.)
Correct Answer: D,F
How is traffic routed onto an SSL VPN tunnel from the FortiGate unit side?
Correct Answer: B
What are the valid sub-types for a Firewall type policy? (Select all that apply)
Correct Answer: B,C,E
In NAT/Route mode when there is no matching firewall policy for traffic to be forwarded by the Firewall, which of the following statements describes the action taken on traffic?
Correct Answer: B
A FortiGate 100 unit is configured to receive push updates from the FortiGuard Distribution Network, however, updates are not being received. Which of the following statements are possible reasons for this? (Select all that apply.)
Correct Answer: A,B,D
A FortiGate unit can act as which of the following? (Select all that apply.)
Correct Answer: A,B,D
Which of the following methods can be used to access the CLI? (Select all that apply.)
Correct Answer: A,B,C,D
Which of the following Fortinet products can receive updates from the FortiGuard Distribution Network? (Select all that apply.)
Correct Answer: A,B,C