SlideShare a Scribd company logo
1 of 3
Download to read offline
Latest Version: 7.2
Question: 1
Which components make up the secure SD-WAN solution?
A. Application, antivirus, and URL, and SSL inspection
B. Datacenter, branch offices, and public cloud
C. FortiGate, FortiManager, FortiAnalyzer, and FortiDeploy
D. Telephone, ISDN, and telecom network.
Answer: C
Question: 2
Refer to the exhibit.
Based on the output shown in the exhibit, which two criteria on the SD-WAN member configuration can
be used to select an outgoing interface in an SD-WAN rule? (Choose two.)
A. Set priority 10.
B. Set cost 15.
C. Set load-balance-mode source-ip-ip-based.
D. Set source 100.64.1.1.
Answer: A,B
Question: 3
What are two reasons why FortiGate would be unable to complete the zero-touch provisioning process?
(Choose two.)
A. The FortiGate cloud key has not been added to the FortiGate cloud portal.
B. FortiDeploy has connected with FortiGate and provided the initial configuration to contact
FortiManager
C. The zero-touch provisioning process has completed internally, behind FortiGate.
D. FortiGate has obtained a configuration from the platform template in FortiGate cloud.
E. A factory reset performed on FortiGate.
Answer: AC
Question: 4
Which two statements describe how IPsec phase 1 main mode is different from aggressive mode when
performing IKE negotiation? (Choose two )
A. A peer ID is included in the first packet from the initiator, along with suggested security policies.
B. XAuth is enabled as an additional level of authentication, which requires a username and password.
C. A total of six packets are exchanged between an initiator and a responder instead of three packets.
D. The use of Diffie Hellman keys is limited by the responder and needs initiator acceptance.
Answer: BC
Question: 5
Refer to the exhibit.
Based on the exhibit, which statement about FortiGate re-evaluating traffic is true?
A. The type of traffic defined and allowed on firewall policy ID 1 is UDP.
B. FortiGate has terminated the session after a change on policy ID 1.
C. Changes have been made on firewall policy ID 1 on FortiGate.
D. Firewall policy ID 1 has source NAT disabled.
Answer: C

More Related Content

More from shirlybaker1

More from shirlybaker1 (20)

Substantial HP HPE6-A68 Exam Preparation Material.pdf
Substantial HP HPE6-A68 Exam Preparation Material.pdfSubstantial HP HPE6-A68 Exam Preparation Material.pdf
Substantial HP HPE6-A68 Exam Preparation Material.pdf
 
AZ-204 A Top-Notch Exam Of Developing Solutions for Microsoft Azure.pdf
AZ-204 A Top-Notch Exam Of Developing Solutions for Microsoft Azure.pdfAZ-204 A Top-Notch Exam Of Developing Solutions for Microsoft Azure.pdf
AZ-204 A Top-Notch Exam Of Developing Solutions for Microsoft Azure.pdf
 
PSE-STRATA Exam Questions For New PSE-STRATA Exam PDF.pdf
PSE-STRATA Exam Questions For New PSE-STRATA Exam PDF.pdfPSE-STRATA Exam Questions For New PSE-STRATA Exam PDF.pdf
PSE-STRATA Exam Questions For New PSE-STRATA Exam PDF.pdf
 
Upgrade Your Preparation With Fortinet NSE7_EFW-6.4 Dumps.pdf
Upgrade Your Preparation With Fortinet NSE7_EFW-6.4 Dumps.pdfUpgrade Your Preparation With Fortinet NSE7_EFW-6.4 Dumps.pdf
Upgrade Your Preparation With Fortinet NSE7_EFW-6.4 Dumps.pdf
 
Juniper JN0-250 Sample Questions With 100% Guarantee.pdf
Juniper JN0-250 Sample Questions With 100% Guarantee.pdfJuniper JN0-250 Sample Questions With 100% Guarantee.pdf
Juniper JN0-250 Sample Questions With 100% Guarantee.pdf
 
Substantial Microsoft AZ-800 Exam Preparation Material.pdf
Substantial Microsoft AZ-800 Exam Preparation Material.pdfSubstantial Microsoft AZ-800 Exam Preparation Material.pdf
Substantial Microsoft AZ-800 Exam Preparation Material.pdf
 
Assess CAS-004 Study Material For Comptia Exam.pdf
Assess CAS-004 Study Material For Comptia Exam.pdfAssess CAS-004 Study Material For Comptia Exam.pdf
Assess CAS-004 Study Material For Comptia Exam.pdf
 
How To Complete NSE8_811 Dumps Questions Preparation.pdf
How To Complete NSE8_811 Dumps Questions Preparation.pdfHow To Complete NSE8_811 Dumps Questions Preparation.pdf
How To Complete NSE8_811 Dumps Questions Preparation.pdf
 
Assess NS0-403 Study Material For NetApp Exam.pdf
Assess NS0-403 Study Material For NetApp Exam.pdfAssess NS0-403 Study Material For NetApp Exam.pdf
Assess NS0-403 Study Material For NetApp Exam.pdf
 
Get PEOPLECERT ITIL-4-Foundation Sample Questions And Answers.pdf
Get PEOPLECERT ITIL-4-Foundation Sample Questions And Answers.pdfGet PEOPLECERT ITIL-4-Foundation Sample Questions And Answers.pdf
Get PEOPLECERT ITIL-4-Foundation Sample Questions And Answers.pdf
 
Could it be said that you are Worried About CISA Exam Study Material.pdf
Could it be said that you are Worried About CISA Exam Study Material.pdfCould it be said that you are Worried About CISA Exam Study Material.pdf
Could it be said that you are Worried About CISA Exam Study Material.pdf
 
Explore CIPP-E Ample Questions & Updated Answers.pdf
Explore CIPP-E Ample Questions & Updated Answers.pdfExplore CIPP-E Ample Questions & Updated Answers.pdf
Explore CIPP-E Ample Questions & Updated Answers.pdf
 
Further develop Your CAS-004 Dumps By Using The Study Kit.pdf
Further develop Your CAS-004 Dumps By Using The Study Kit.pdfFurther develop Your CAS-004 Dumps By Using The Study Kit.pdf
Further develop Your CAS-004 Dumps By Using The Study Kit.pdf
 
Pass AZ-104 Exam With Microsoft Azure Administrator Exam.pdf
Pass AZ-104 Exam With Microsoft Azure Administrator Exam.pdfPass AZ-104 Exam With Microsoft Azure Administrator Exam.pdf
Pass AZ-104 Exam With Microsoft Azure Administrator Exam.pdf
 
Top Updated 350-901 Exam Questions And Answer.pdf
Top Updated 350-901 Exam Questions And Answer.pdfTop Updated 350-901 Exam Questions And Answer.pdf
Top Updated 350-901 Exam Questions And Answer.pdf
 
Latest Products Of Cisco 350-401 Certification Dumps.pdf
Latest Products Of Cisco 350-401 Certification Dumps.pdfLatest Products Of Cisco 350-401 Certification Dumps.pdf
Latest Products Of Cisco 350-401 Certification Dumps.pdf
 
Benefit 300-810 Exam Training Kit With Updated Demo.pdf
Benefit 300-810 Exam Training Kit With Updated Demo.pdfBenefit 300-810 Exam Training Kit With Updated Demo.pdf
Benefit 300-810 Exam Training Kit With Updated Demo.pdf
 
Latest CompTIA SY0-601 Exam Dumps Questions And Answer.pdf
Latest CompTIA SY0-601 Exam Dumps Questions And Answer.pdfLatest CompTIA SY0-601 Exam Dumps Questions And Answer.pdf
Latest CompTIA SY0-601 Exam Dumps Questions And Answer.pdf
 
Pass NSE5_FCT-7.0 Dumps With Updated NSE5_FCT-7.0 Exam Topics.pdf
Pass NSE5_FCT-7.0 Dumps With Updated NSE5_FCT-7.0 Exam Topics.pdfPass NSE5_FCT-7.0 Dumps With Updated NSE5_FCT-7.0 Exam Topics.pdf
Pass NSE5_FCT-7.0 Dumps With Updated NSE5_FCT-7.0 Exam Topics.pdf
 
Get ADM-201 Practice Test For Salesforce Certified Administrator (SP22).pdf
Get ADM-201 Practice Test For Salesforce Certified Administrator (SP22).pdfGet ADM-201 Practice Test For Salesforce Certified Administrator (SP22).pdf
Get ADM-201 Practice Test For Salesforce Certified Administrator (SP22).pdf
 

Free NSE7_SDW-6.4 Exam Questions Available For Download.pdf

  • 1. Latest Version: 7.2 Question: 1 Which components make up the secure SD-WAN solution? A. Application, antivirus, and URL, and SSL inspection B. Datacenter, branch offices, and public cloud C. FortiGate, FortiManager, FortiAnalyzer, and FortiDeploy D. Telephone, ISDN, and telecom network. Answer: C Question: 2 Refer to the exhibit. Based on the output shown in the exhibit, which two criteria on the SD-WAN member configuration can be used to select an outgoing interface in an SD-WAN rule? (Choose two.) A. Set priority 10. B. Set cost 15. C. Set load-balance-mode source-ip-ip-based. D. Set source 100.64.1.1.
  • 2. Answer: A,B Question: 3 What are two reasons why FortiGate would be unable to complete the zero-touch provisioning process? (Choose two.) A. The FortiGate cloud key has not been added to the FortiGate cloud portal. B. FortiDeploy has connected with FortiGate and provided the initial configuration to contact FortiManager C. The zero-touch provisioning process has completed internally, behind FortiGate. D. FortiGate has obtained a configuration from the platform template in FortiGate cloud. E. A factory reset performed on FortiGate. Answer: AC Question: 4 Which two statements describe how IPsec phase 1 main mode is different from aggressive mode when performing IKE negotiation? (Choose two ) A. A peer ID is included in the first packet from the initiator, along with suggested security policies. B. XAuth is enabled as an additional level of authentication, which requires a username and password. C. A total of six packets are exchanged between an initiator and a responder instead of three packets. D. The use of Diffie Hellman keys is limited by the responder and needs initiator acceptance. Answer: BC Question: 5 Refer to the exhibit.
  • 3. Based on the exhibit, which statement about FortiGate re-evaluating traffic is true? A. The type of traffic defined and allowed on firewall policy ID 1 is UDP. B. FortiGate has terminated the session after a change on policy ID 1. C. Changes have been made on firewall policy ID 1 on FortiGate. D. Firewall policy ID 1 has source NAT disabled. Answer: C