Spring Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

NSE6_FNC-7.2 Fortinet NSE 6 - FortiNAC 7.2 Questions and Answers

Questions 4

In which view would you find who made modifications to a Group?

Options:

A.

The Event Management view

B.

The Security Events view

C.

The Alarms view

D.

The Admin Auditing view

Buy Now
Questions 5

When configuring isolation networks in the configuration wizard, why does a Layer 3 network type allow for more than one DHCP scope for each isolation network type?

Options:

A.

There can be more than one isolation network of each type.

B.

Any scopes beyond the first scope are used if the Initial scope runs out of IP addresses.

C.

Configuring more than one DHCP scope allows for DHCP server redundancy.

D.

The Layer 3 network type allows for one scope for each possible host status.

Buy Now
Questions 6

Which three are components of a security rule? (Choose three.)

Options:

A.

Methods

B.

Security String

C.

Trigger

D.

User or host profile

E.

Action

Buy Now
Questions 7

Which three of the following are components of a security rule? (Choose three.)

Options:

A.

Security String

B.

Methods

C.

Action

D.

User or host profile

E.

Trigger

Buy Now
Questions 8

Which three circumstances trigger Layer 2 polling of infrastructure devices? (Choose three.)

Options:

A.

Manual polling

B.

Scheduled poll timings

C.

A failed Layer 3 poll

D.

A matched security policy

E.

Linkup and Linkdown traps

Buy Now
Questions 9

View the command and output.

NSE6_FNC-7.2 Question 9

What is the state of database replication?

Options:

A.

Secondary to primary synchronization failed.

B.

Primary to secondary synchronization failed.

C.

Secondary to primary synchronization was successful.

D.

Primary to secondary database synchronization was successful.

Buy Now
Questions 10

Which system group will force at-risk hosts into the quarantine network, based on point of connection?

Options:

A.

Physical Address Filtering

B.

Forced Quarantine

C.

Forced Isolation

D.

Forced Remediation

Buy Now
Questions 11

What would occur if both an unknown (rogue) device and a known (trusted) device simultaneously appeared on a port that is a member of the Forced Registration port group?

Options:

A.

The port would be provisioned for the normal state host, and both hosts would have access to that VLAN.

B.

The port would not be managed, and an event would be generated.

C.

The port would be provisioned to the registration network, and both hosts would be isolated.

D.

The port would be administratively shut down.

Buy Now
Questions 12

With enforcement for network access policies and at-risk hosts enabled, what will happen if a host matches a network access policy and has a state of " at risk " ?

Options:

A.

The host is provisioned based on the default access defined by the point of connection.

B.

The host is provisioned based on the network access policy.

C.

The host is isolated.

D.

The host is administratively disabled.

Buy Now
Questions 13

Which two agents can validate endpoint compliance transparently to the end user? (Choose two.)

Options:

A.

Dissolvable

B.

Mobile

C.

Passive

D.

Persistent

Buy Now
Questions 14

Which two things must be done to allow FortiNAC to process incoming syslog messages from an unknown vendor? (Choose two.)

Options:

A.

A security event parser must be created for the device.

B.

The device sending the messages must be modeled in the Network Inventory view.

C.

The device must be added as a patch management server.

D.

The device must be added as a log receiver.

Buy Now
Questions 15

Where should you configure MAC notification traps on a supported switch?

Options:

A.

Configure them only after you configure linkup and linkdown traps.

B.

Configure them on all ports on the switch.

C.

Configure them only on ports set as 802 1g trunks.

D.

Configure them on all ports except uplink ports.

Buy Now
Questions 16

When FortiNAC passes a firewall tag to FortiGate, what determines the value that is passed?

Options:

A.

Security rule

B.

Device profiling rule

C.

RADIUS group attribute

D.

Logical network

Buy Now
Questions 17

Which agent is used only as part of a login script?

Options:

A.

Mobile

B.

Passive

C.

Persistent

D.

Dissolvable

Buy Now
Exam Code: NSE6_FNC-7.2
Exam Name: Fortinet NSE 6 - FortiNAC 7.2
Last Update: May 19, 2026
Questions: 57

PDF + Testing Engine

$64.99   $185.69

Testing Engine

$49.99   $142.83

PDF (Q&A)

$54.99   $157.11