Fortinet NSE8_813 시험 개요:
| 인증 벤더: | Fortinet |
|---|---|
| 시험명: | Fortinet NSE 8 - 재인증 시험 |
| 시험 번호: | NSE8_813 |
| 시험 시간: | 120분 |
| 지원 언어: | 영어 |
| 응시료: | $400 USD |
| 시험 형식: | 객관식 단일 선택, 객관식 다중 선택, 시나리오 기반 문제 |
| 관련 자격증: | NSE 2 NSE 5 NSE 6 NSE 7 NSE 3 NSE 4 NSE 1 |
| 합격 점수: | 합격/불합격 |
| 실제 시험 문항 수: | 55–60 |
| 자격증 유효 기간: | 3년 |
| 권장 교육: | 공식 NSE 8 교육 및 학습 자료 Fortinet Certified Expert (FCX) 심화 워크숍 |
| 시험 등록: | Pearson VUE 등록 |
| 샘플 문제: | Fortinet NSE8_813 샘플 문제 |
| 응시 방법: | 온라인 감독 방식(OnVUE) 또는 Pearson VUE 시험 센터 방문 응시 |
| 전제 조건: | 유효한 NSE 8 / FCX 인증을 보유해야 함; 시험 응시에 대한 공식적인 선수 조건은 없으나, Fortinet 기업용 솔루션에 대한 폭넓은 실무 경험이 매우 권장됨 |
| 공식 요강 URL: | https://training.fortinet.com/local/staticpage/view.php?page=nse_8 |
Fortinet NSE8_813 시험 요강 주제:
| 섹션 | 목표 |
|---|---|
| 주제 1: 고가용성 및 안정성 확보 | - FortiGate HA 및 클러스터 구성
|
| 주제 2: 중앙 집중식 관리 및 분석 | - FortiAnalyzer
|
| 주제 3: 위협 방지 및 인텔리전스 | - FortiGuard 서비스
|
| 주제 4: 기업 보안 아키텍처 및 설계 | - Fortinet Security Fabric 아키텍처
|
| 주제 5: 안전한 연결 및 VPN 기술 | - IPsec 및 SSL VPN 구현
|
| 주제 6: 고급 문제 해결 및 최적화 | - 네트워크 및 보안 진단
|
최신 Fortinet NSE 8 NSE8_813 무료샘플문제
문제 #1
You have configured an HA cluster with two FortiGate devices. You want to make sure that you are able to manage the individual cluster members directly using port3.
Referring to the configuration shown, in which two ways can you accomplish this task? (Choose two.)
A. Disable the sync feature on port3; then configure specific IPs for port3 on both cluster members.
B. Configure port3 to be a dedicated HA management interface; then configure specific IPs for port3 on both cluster members.
C. Create a management VDOM and disable the HA synchronization for this VDOM, assign port3 to this VDOM, then configure specific IPs for port3 on both cluster members.
D. Allow administrative access in the HA heartbeat interfaces.
문제 #2
Refer to the exhibit.
An HTTPS access proxy is configured to demonstrate its function as a reverse proxy on behalf of the web server it is protecting. It verifies user identity, device identity, and trust context, before granting access to the protected source. It is assumed that the FortiGate EMS fabric connector has already been successfully connected.
You need to ensure that ZTNA access through the FortiGate will redirect users to the FortiAuthenticator to perform username/password and multifactor authentication to validate access prior to accessing resources behind the FortiGate.
In this scenario, which two further steps need to be taken on the FortiGate? (Choose two.)
A. Create an authentication rule that sets the sso-auth-method to the FortiAuthenticator.
B. Create a firewall rule that allows access from the remote endpoint to the resources behind the FortiGate.
C. Create a SAML user/server object referring to the FortiAuthenticator.
D. Create an authentication scheme with the "method" as SAML.
문제 #3
A university is looking for a solution with the following requirements:
- wired and wireless connectivity
- authentication (LDAP)
- Web filtering, DLP and application control
- data base integration using LDAP to provide access to those students
who are up-to-date with their monthly payments
- support for an external captive portal
Which solution meets these requirements?
A. FortiGate for wireless control and user authentication FortiAuthenticator for captive portal and REST API for DB integration FortiAP for wireless connectivity FortiSwitch for PoE connectivity FortiAnalyzer for log and report
B. FortiGate for wireless controller FortiAP for wireless connectivity and captive portal FortiSwitch for PoE connectivity FortiAuthenticator for user authentication and REST API for DB integration FortiAnalyzer for log and reports
C. FortiGate for wireless controller and captive portal FortiAP for wireless connectivity FortiAuthenticator for user authentication and REST API for DB integration FortiSwitch for PoE connectivity FortiAnalyzer for log and report
D. FortiGate for wireless controller FortiAP for wireless connectivity FortiAuthenticator for user authentication, captive portal and REST API for DB integration FortiSwitch for PoE connectivity FortiAnalyzer for log and report
문제 #4
A legacy router has been replaced by a FortiGate device. The FortiGate has inherited the management IP address of the router and now the network administrator needs to remove the router from the FortiSIEM configuration.
Which two statements about this operation are true? (Choose two.)
A. By default, FortiSIEM can only parser event logs for FortiGate devices.
B. The router will be completely deleted from the FortiSIEM database.
C. FortiSIEM will move the router device into the Decommission folder.
D. FortiSIEM will discover a new device for the FortiGate with the same IP.
문제 #5
Refer to the exhibit. A customer has deployed a FortiGate 200F high-availability (HA) cluster that contains a TPM chip. The exhibit shows output from the FortiGate CLI session where the administrator enabled TPM.
Following these actions, the administrator immediately notices that both FortiGate high availability (HA) status and FortiManager status for the FortiGate are negatively impacted.
What are the two reasons for this behavior? (Choose two.)
A. The FortiGate has not finished the auto-update process to synchronize the new configuration to FortiManager yet.
B. TPM functionality is not yet compatible with FortiGate HA.
C. The administrator needs to manually enter the hex private data encryption key in FortiManager.
D. The private-data-encryption key entered on the primary did not match the value that the TPM expected.
E. Configuration for TPM is not synchronized between FortiGate HA cluster members.
질문과 대답:
| 문제 #1 정답: B,C | 문제 #2 정답: C,D | 문제 #3 정답: C | 문제 #4 정답: C,D | 문제 #5 정답: C,E |














1180 개 고객 리뷰
품질과 가치ITCertKR 의 높은 정확도를 보장하는 최고품질의 덤프는 IT인증시험에 대비하여 제작된것으로서 높은 적중율을 자랑하고 있습니다.
테스트 및 승인ITCertKR 의 덤프는 모두 엘리트한 전문가들이 실제시험문제를 분석하여 답을 작성한 만큼 시험문제의 적중률은 아주 높습니다.
쉽게 시험패스ITCertKR의 테스트 엔진을 사용하여 시험을 준비한다는것은 첫 번째 시도에서 인증시험 패스성공을 의미합니다.
주문하기전 체험ITCertKR의 각 제품은 무료 데모를 제공합니다. 구입하기로 결정하기 전에 덤프샘플문제로 덤프품질과 실용성을 검증할수 있습니다.
