Question 1 of 30
Anya, a network security engineer, is implementing a new remote access policy on a FortiGate firewall running FortiOS 5.4. The policy mandates that VPN users can only access specific internal application servers during business hours and must be prevented from utilizing any file-sharing applications. Furthermore, all access attempts, successful or failed, must be logged and available for compliance audits, which are influenced by data privacy regulations requiring accountability for data access. Anya needs to configure the FortiGate to achieve this granular control and comprehensive logging. Which combination of FortiOS 5.4 features would most effectively address these requirements?
Implementing User-based firewall policies, application control profiles, and enabling SSL/TLS inspection with detailed logging for all traffic
Configuring IP-based firewall policies with static port restrictions, utilizing application control for known file-sharing ports, and enabling basic traffic logging
Deploying application control profiles only, relying on VPN user authentication for access control, and setting up SNMP traps for logging
Utilizing static routing for application servers, implementing web filtering for file-sharing websites, and disabling SSL/TLS inspection to improve performance

Preparing for NSE45.4 Fortinet Network Security Expert FortiOS 5.4? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free