Fortinet NSE7_EFW-7.2 - Fortinet NSE 7 - Enterprise Firewall 7.2 Exam
Page: 3 / 18
Total 88 questions
Question #11 (Topic: Exam A)
Refer to the exhibit, which shows a custom signature.

Which two modifications must you apply to the configuration of this custom signature so that you can save it on FortiGate? (Choose two.)

Which two modifications must you apply to the configuration of this custom signature so that you can save it on FortiGate? (Choose two.)
A. Ensure that the header syntax is F-SBID.
B. Add severity.
C. Add attack_id.
D. Start options with --.
Answer: AD
Question #12 (Topic: Exam A)
What are two functions of automation stitches? (Choose two.)
A. Automation stitches can be created to run diagnostic commands and email the results when CPU or memory usage exceeds specified thresholds.
B. An automation stitch configured to execute actions in parallel can be set to insert a specific delay between actions.
C. Automation stitches can be configured on any FortiGate device in a Security Fabric environment.
D. An automation stitch configured to execute actions sequentially can take parameters from previous actions as input for the current action.
Answer: AD
Question #13 (Topic: Exam A)
Refer to the exhibit which shows config system central-management information.

Which setting must you configure for the web filtering feature to function?

Which setting must you configure for the web filtering feature to function?
A. Set update-server-location to automatic
B. Add server.fortiguard.net to the Server list
C. Configure securewf.fortiguard.net on the default servers
D. Configure server-type with the rating option
Answer: D
Question #14 (Topic: Exam A)
Which two statements about the Security Fabric are true? (Choose two.)
A. FortiGate uses the FortiTelemetry protocol to communicate with FortiAnalyzer
B. Only the root FortiGate sends logs to FortiAnalyzer
C. Only FortiGate devices with configuration-sync set to default receive and synchronize global CMDB objects that the root FortiGate sends
D. Only the root FortiGate collects network topology information and forwards it to FortiAnalyzer
Answer: CD
Question #15 (Topic: Exam A)
Refer to the exhibit which shows two configured FortiGate devices and peering over
FGSP.

The main link directly connects the two FortiGate devices and is configured using the
set session-syn-dev <interface> command.
What is the primary reason to configure the main link?
FGSP.

The main link directly connects the two FortiGate devices and is configured using the
set session-syn-dev <interface> command.
What is the primary reason to configure the main link?
A. To have only configuration synchronization in layer 3
B. To load balance both sessions and configuration synchronization between layer 2 and 3
C. To have both sessions and configuration synchronization in layer 3
D. To have both sessions and configuration synchronization in layer 2
Answer: D