NSE7_EFW-7.0 Fortinet NSE 7 - Enterprise Firewall 7.0

Loading demo links...

Showing 4–6 of 10 questions

Question 4

Refer to the exhibit, which shows the output of a diagnose command.

What can you conclude from the output shown in the exhibit? (Choose two.)

Select all that apply, then click Submit answer.

  • This is a pinhole session created to allow traffic for a protocol that requires additional sessions to operate through FortiGate.

  • This is an expected session created by the IPS engine.

  • Traffic in the original direction (coming from the IP address 10.171.121.38) will be routed to the next-hop IP address 10.200.1.1.

  • Traffic in the original direction (coming from the IP address 10.171.121.38) will be routed to the next-hop IP address 10.0.1.10.

Question 5

What events are recorded in the crashlogs of a FortiGate device? (Choose two.)

Select all that apply, then click Submit answer.

  • A process crash.

  • Configuration changes.

  • Changes in the status of any of the FortiGuard licenses.

  • System entering to and leaving from the proxy conserve mode.

Question 6

An administrator has configured two FortiGate devices for an HA cluster. While testing HA failover, the administrator notices that some of the switches in the network continue to send traffic to the former primary device.

What can the administrator do to fix this problem?

Select an option, then click Submit answer.

  • Configure remote link monitoring to detect an issue in the forwarding path.

  • Configure set send-garp-on-failover enable under config system ha on both cluster members.

  • Verify that the speed and duplex settings match between the FortiGate interfaces and the connected switch ports.

  • Configure set link-failed-signal enable under config system ha on both cluster members.