Fortinet NSE7_FSN_AR-7.6 - Fortinet NSE 7 - Secure Networking 7.6 Architect Exam

Question #6 (Topic: Exam A)
Refer to the exhibit.

For your ZTP deployment, you review the CSV file shown in exhibit and note that it is missing important information.
Which two elements must you change before you can import it into FortiManager? (Choose two.)
A. You must define a name for each device. B. You must define a value for each device and each user-defined metadata variable. C. You must associate a device blueprint with each device. D. You must define a value for each device and each metadata variable that defines an IP address.
Answer: AC
Question #7 (Topic: Exam A)
Which two troubleshooting steps should you perform if you encounter issues with intermittent web filter behavior? (Choose two.)
A. Check that the inspection mode configured for the web filter profile matches that of the firewall policy where it is applied. B. Check that the correct port is mapped to HTTP in the Protocol Options. C. Check that the communication between FortiGate and FortiGuard is stable. D. Check that FortiGate is not entering conserve mode.
Answer: CD
Question #8 (Topic: Exam A)
Refer to the exhibit.

The output of diagnose sys session list command is shown.
If the HA ID for the primary device is 0, what happens if the primary fails and the secondary becomes the primary?
A. The session state is preserved but the kernel will re-evaluate the session because the routing information will be flushed. B. The session is synchronized with the secondary device, however, because application control is applied, the session is marked dirty and has to be re-evaluated after failover. C. The session will be removed from the session table of the secondary device because the TCP session is not yet fully established. D. The session continues to permit traffic on the new primary device after failover, without requiring the client to restart the session with the server.
Answer: D
Question #9 (Topic: Exam A)
Refer to the exhibit.

How does FortiGate handle the traffic with the source IP address 10.0.1.125 and the destination IP address 128.66.0.125?
A. FortiGate routes the traffic flow according to the forwarding information base (FIB). B. FortiGate drops the traffic flow. C. FortiGate steers the traffic flow through port7. D. FortiGate load balances the traffic flow through port7 and port8.
Answer: D
Question #10 (Topic: Exam A)
You use the FortiManager SD-WAN overlay orchestrator to prepare an SD-WAN deployment. Using information provided through the SD-WAN overlay template wizard, FortiManager creates templates that are ready to install on the spoke and hub devices.
Which three templates are created by the SD-WAN overlay orchestrator for a spoke device? (Choose three.)
A. CLI template B. Static route template C. Rules template D. BGP template E. IPsec tunnel template
Answer: ADE
Download Exam
Page: 2 / 11
Total 55 questions