Fortinet NSE7_EFW-7.2 Fortinet NSE 7 - Enterprise Firewall 7.2 Exam Practice Test

Page: 1 / 14
Total 56 questions
Question 1

Refer to the exhibit, which shows an SSL certification inspection configuration.

Which action does FortiGate take if the server name indication (SNI) does not match either the common name (CN) or any of the subject alternative names (SAN) in the server certificate?



Answer : D


Question 2

Which statement about the designated router (DR) and backup designated router (BDR) in an OSPF multi-access network is true?



Answer : B


Question 3

Refer to the exhibits, which contain the network topology and BGP configuration for a hub.

Exhibit A.

Exhibit B.

An administrator is trying to configure ADVPN with a hub and spoke VPN setup using iBGP. All the VPNs are up and connected to the hub. The hub is receiving route information from both spokes over iBGP; however the spokes are not receiving route information from each other.

What change must the administrator make to the hub BGP configuration so that the routes learned from one spoke are forwarded to the other spoke?



Answer : B


Question 4

What are two functions of automation stitches? (Choose two.)



Answer : A, D


Question 5

How are bulk configuration changes made using FortiManager CLI scripts? (Choose two.)



Answer : B, D


Question 6

Refer to the exhibit, which shows a routing table.

What two options can you configure in OSPF to block the advertisement of the 10.1.10.0 prefix? (Choose two.)



Question 7

Refer to the exhibit.

which contains a partial configuration of the global system. What can you conclude from this output?



Answer : D

The configuration output shows various global settings for a FortiGate device. The terms NP (Network Processor) and CP (Content Processor) relate to FortiGate's hardware acceleration features. However, the provided configuration output does not directly mention the status (enabled or disabled) of NPs and CPs. Typically, the command to disable or enable hardware acceleration features would specifically mention NP or CP in the command syntax. Therefore, based on the output provided, we cannot conclusively determine the status of NPs and CPs, hence option D is the closest answer since the output does not confirm that they are enabled.


FortiOS Handbook - CLI Reference for FortiOS 5.2

Page:    1 / 14   
Total 56 questions