Podcast
Questions and Answers
What is the first step in optimizing memory use on FortiGate devices?
What is the first step in optimizing memory use on FortiGate devices?
- Disable unnecessary features (correct)
- Reduce the DNS cache
- Reduce the session TTL
- Reduce the FortiGuard cache TTL
What is the default maximum file size to inspect on FortiGate devices?
What is the default maximum file size to inspect on FortiGate devices?
- 3 MB
- 5 MB
- 2 MB
- 10 MB (correct)
What is the recommended maximum file size to inspect on FortiGate devices?
What is the recommended maximum file size to inspect on FortiGate devices?
- 5 MB
- 10 MB
- 2 MB (correct)
- 3 MB
What is the default session TTL for TCP traffic on FortiGate devices?
What is the default session TTL for TCP traffic on FortiGate devices?
What is the default session TTL for UDP traffic on FortiGate devices?
What is the default session TTL for UDP traffic on FortiGate devices?
What is the recommended session TTL for all traffic on FortiGate devices?
What is the recommended session TTL for all traffic on FortiGate devices?
What is the purpose of reducing the FortiGuard cache TTL on FortiGate devices?
What is the purpose of reducing the FortiGuard cache TTL on FortiGate devices?
What is the purpose of reducing the DNS cache TTL on FortiGate devices?
What is the purpose of reducing the DNS cache TTL on FortiGate devices?
What is the purpose of reducing the session TTL on FortiGate devices?
What is the purpose of reducing the session TTL on FortiGate devices?
What is the recommended session TTL for each firewall policy on FortiGate devices?
What is the recommended session TTL for each firewall policy on FortiGate devices?
What does the tcp-halfopen-timer control?
What does the tcp-halfopen-timer control?
What is the default value for tcp-halfclose-timer?
What is the default value for tcp-halfclose-timer?
What is the purpose of reducing TCP session timers?
What is the purpose of reducing TCP session timers?
How can you set the session-ttl option?
How can you set the session-ttl option?
What is the purpose of tcp-timewait-timer?
What is the purpose of tcp-timewait-timer?
Can you reduce TCP session timers without causing problems to applications?
Can you reduce TCP session timers without causing problems to applications?
What is the recommended value for tcp-halfopen-timer?
What is the recommended value for tcp-halfopen-timer?
What is the purpose of tcp-halfclose-timer?
What is the purpose of tcp-halfclose-timer?
What is the default value for tcp-timewait-timer?
What is the default value for tcp-timewait-timer?
What is the purpose of a closed session remaining in the session table for a few seconds more?
What is the purpose of a closed session remaining in the session table for a few seconds more?
Which command can be used to identify if a FortiGate device is currently in conserve mode?
Which command can be used to identify if a FortiGate device is currently in conserve mode?
What happens when the kernel cannot allocate more memory pages?
What happens when the kernel cannot allocate more memory pages?
What is the purpose of the command 'diagnose sys session stat'?
What is the purpose of the command 'diagnose sys session stat'?
What is an ephemeral session?
What is an ephemeral session?
What is the purpose of FortiOS setting a limit on the total number of ephemeral sessions?
What is the purpose of FortiOS setting a limit on the total number of ephemeral sessions?
What are some common types of DOS attacks that involve ephemeral sessions?
What are some common types of DOS attacks that involve ephemeral sessions?
What is the maximum number of ephemeral sessions that can exist at the same time in the session table?
What is the maximum number of ephemeral sessions that can exist at the same time in the session table?
What happens when the number of ephemeral sessions increases abnormally during a DOS attack?
What happens when the number of ephemeral sessions increases abnormally during a DOS attack?
What is the purpose of FortiGate's mechanism to protect memory use against DOS attacks?
What is the purpose of FortiGate's mechanism to protect memory use against DOS attacks?
Which type of session is categorized as ephemeral?
Which type of session is categorized as ephemeral?
Flashcards are hidden until you start studying