NSE7_SDW-6.4 Fortinet NSE 7 - SD-WAN 6.4.5

Loading demo links...

Showing 4–6 of 10 questions

Question 4

Which two statements describe how IPsec phase 1 aggressive mode is different from main mode when performing IKE negotiation? (Choose two)

Select all that apply, then click Submit answer.

  • A peer ID is included in the first packet from the initiator, along with suggested security policies.

  • XAuth is enabled as an additional level of authentication, which requires a username and password.

  • A total of six packets are exchanged between an initiator and a responder instead of three packets.

  • The use of Diffie Hellman keys is limited by the responder and needs initiator acceptance.

Question 5

Refer to the exhibit.

Text Description automatically generated

Based on the exhibit, which two actions does FortiGate perform on traffic passing through the SD-WAN member port2? (Choose two.)

Select all that apply, then click Submit answer.

  • FortiGate performs routing lookups for new sessions only after a route change.

  • FortiGate marks the routing information on existing sessions as persistent.

  • FortiGate flushes all routing information from the session table after a route change.

  • FortiGate always blocks all traffic after a route change.

Question 6

What is the lnkmtd process responsible for?

Select an option, then click Submit answer.

  • Monitoring links for any bandwidth saturation

  • Processing performance SLA probes

  • Flushing route tags addresses

  • Logging interface quality information