Fortinet NSE7_SSE_AR-26 - Fortinet NSE 7 - FortiSASE 26 Architect Exam

Question #1 (Topic: Exam A)
An administrator configures the performance service-level agreement (SLA) with the probe mode, Passive.
What are two observable impacts of this configuration? (Choose two.)
A. FortiGate passively monitors the member if ICMP traffic is passing through the member. B. The performance SLA measures the performance only on the preferred link. C. FortiGate can offload traffic subject to passive monitoring to hardware. D. FortiGate passively monitors the member if TCP traffic is passing through the member. E. The SLA performance falls back to active monitoring when no traffic has been detected for 3 minutes.
Answer: DE
Question #2 (Topic: Exam A)
You want to configure two static routes. One that references a zone and the second one that references an SD-WAN member that belongs to that zone.
Which statement about this scenario is true?
A. You cannot create static routes that reference an SD-WAN zone. B. The destination subnets must be different. C. You cannot create static routes for individual SD-WAN members. D. The destination subnet of routes defined for the zone must overlap the subnet of the route defined for the member.
Answer: B
Question #3 (Topic: Exam A)
When you deploy SD-WAN, you can choose from several common designs. Each design best applies to specific contexts.
Which two statements correctly associate a common SD-WAN design with its main indication or constraint? (Choose two.)
A. Use a remote breakout design to centralize the traffic security inspection and allow local devices with limited capabilities. B. Use secure private access for companies with remote users. C. Use a cloud on-ramp topology to centralize the web traffic inspection and limit local management requirements. D. Use a standalone design for sites that do not require HA redundancy.
Answer: BD
Question #4 (Topic: Exam A)
Which two components are part of onboarding a proxy-based endpoint for secure internet access (SIA)? (Choose two.)
A. Proxy auto-configuration (РАС) file B. FortiClient software C. FortiSASE certificate authority (CA) certificate D. Tunnel policy
Answer: AC
Question #5 (Topic: Exam A)
What are two benefits of deploying secure private access with SD-WAN? (Choose two.)
A. Support of both TCP and UDP applications B. ZTNA posture check performed by the hub FortiGate C. A direct access proxy tunnel from FortiClient to the on-premises FortiGate D. Inline security inspection by FortiSASE
Answer: AD
Download Exam
Page: 1 / 7
Total 35 questions