Weekend Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Fortinet NSE7_SDW-6.4 Questions Answers

Fortinet NSE 7 - SD-WAN 6.4.5 Questions and Answers

Question 9

Refer to the exhibit.

FortiGate has multiple dial-up VPN interfaces incoming on port1 that match only FIRST_VPN.

Which two configuration changes must be made to both IPsec VPN interfaces to allow incoming connections to match all possible IPsec dial-up interfaces? (Choose two.)

Options:

A.

Specify a unique peer ID for each dial-up VPN interface.

B.

Use different proposals are used between the interfaces.

C.

Configure the IKE mode to be aggressive mode.

D.

Use unique Diffie Hellman groups on each VPN interface.

Question 10

Which statement defines how a per-IP traffic shaper of 10 Mbps is applied to the entire network?

Options:

A.

FortiGate allocates each IP address a maximum 10 Mbps of bandwidth.

B.

Each IP is guaranteed a minimum 10 Mbps of bandwidth

C.

A single user uses the allocated bandwidth divided by total number of users.

D.

The 10 Mbps bandwidth is shared equally among the IP addresses.

Question 11

Refer to the exhibit.

Which two statements about the debug output are true? (Choose two)

Options:

A.

The debug output shows per-IP shaper values and real-time readings.

B.

FortiGate provides statistics and reading based on historical traffic logs.

C.

Traffic being controlled by the traffic shaper is under 100 KB/s.

D.

This traffic shaper drops traffic that exceeds the set limits.

Question 12

Which two benefits from using forward error correction (FEC) in IPsec VPNs are true? (Choose two.)

Options:

A.

FEC transmits the original payload in full to recover the error in transmission.

B.

FEC reduces the stress on the remote device buffer to reconstruct packet loss.

C.

FEC transmits additional packets as redundant data to the remote device.

D.

FEC improves reliability, which overcomes adverse WAN conditions such as noisy links.