
FortinetNSE 6 - FortiNAC Administrator
Domain 2Objective 1
Configure Security Automation NSE6-FORTINAC-ADMINISTRATOR Practice Questions (Page 2)
Part of the Deployment and Provisioning domain, which accounts for 30-40% of the NSE6-FORTINAC-ADMINISTRATOR exam.
17questions here
4free pages
4concepts
30-40%of the exam
Questions 6–10
- 6
What is the purpose of a custom parser in FortiNAC?
Select an answer first - 7
A company uses a custom security appliance that sends logs in a JSON format over UDP. The logs contain fields like 'src_mac', 'severity', and 'alert_type'. The security team wants FortiNAC to automatically block devices when the 'alert_type' is 'malware'. What is the FIRST step to achieve this?
Select an answer first - 8
A manufacturing company uses a legacy IDS that sends alerts in a proprietary text format. The format includes the device MAC address, a severity level, and a description, but it does not use standard syslog headers. The network team wants FortiNAC to automatically block the offending device when the IDS reports a 'critical' severity alert. What must be done to achieve this?
Select an answer first - 9
In an automated threat response workflow, what is the typical first step after FortiNAC receives a threat event from an integrated security device?
Select an answer first - 10
An administrator wants to automatically quarantine a device that is detected as compromised by an integrated firewall. Which FortiNAC feature should be used to implement this automated response?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Fortinet. “NSE6-FORTINAC-ADMINISTRATOR” is a trademark of its owner, used for identification only.