Weekend Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Note! Following NSE8_811 Exam is Retired now. Please select the alternative replacement for your Exam Certification. The new exam code is NSE8_812

Verified By IT Certified Experts

CertsTopics.com Certified Safe Files

Up-To-Date Exam Study Material

99.5% High Success Pass Rate

100% Accurate Answers

Instant Downloads

Exam Questions And Answers PDF

Try Demo Before You Buy

Certification Exams with Helpful Questions And Answers

Fortinet NSE 8 Written Exam (NSE8_811) Questions and Answers

Question 1

You deploy a FortiGate device in a remote office based on the requirements shown below.

-- Due to company's security policy, management IP of your FortiGate is not allowed to access the Internet.

-- Apply Web Filtering, Antivirus, IPS and Application control to the protected subnet.

-- Be managed by a central FortiManager in the head office.

Which action will help to achieve the requirements?

Options:

A.

Configure a default route and make sure that the FortiGate device can pmg to service fortiguard net.

B.

Configure the FortiGuard override server and use the IP address of the FortiManager

C.

Configure the FortiGuard override server and use the IP address of service, fortiguard net.

D.

Configure FortiGate to use FortiGuard Filtering Port 8888.

Buy Now
Question 2

You want to manage a FortiCloud service. The FortiGate shows up in your list devices on the FortiCloud Web site, but all management functions are either missing or grayed out.

Which statement a correct in this scenario?

Options:

A.

The managed FcrtGate a running a version of ForflOS that is either too new or too for FortCloud.

B.

The managed FortiGate requires that a FortiCloud management license be purchased and applied.

C.

You must manually configure system control-management on the FortiGate CLI and set the management type to fortiguard.

D.

The management tunnel mode on the managed FortiGate must be changed to normal.

Question 3

Click the Exhibit button.

A FortiGate with the default configuration is deployed between two IP phones. FortiGate receives the INVITE request shown in the exhibit form Phone A (internal)to Phone B (external). Which two actions are taken by the FortiGate after the packet is received? (Choose two.)

Options:

A.

A pinhole will be opened to accept traffic sent to FortiGate's WAN IP address and ports 49169 and 49170.

B.

a pinhole will be opened to accept traffic sent to FortiGate's WAN IP address and ports 49l70 and 49171.

C.

The phone A IP address will be translated lo the WAN IP address in all INVITE header fields and the m: field of the SDP statement.

D.

The phone A IP address will be translated for the WAN IP address in all INVITE header fields and the SDP statement remains intact.