Black Friday Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Legit NSE7_EFW-7.2 Exam Download

Fortinet NSE 7 - Enterprise Firewall 7.2 Questions and Answers

Question 13

You want to configure faster failure detection for BGP

Which parameter should you enable on both connected FortiGate devices?

Options:

A.

Ebgp-enforce-multihop

B.

bfd

C.

Distribute-list-in

D.

Graceful-restart

Question 14

Which two statements about IKE version 2 fragmentation are true? (Choose two.)

Options:

A.

Only some IKE version 2 packets are considered fragmentable.

B.

The reassembly timeout default value is 30 seconds.

C.

It is performed at the IP layer.

D.

The maximum number of IKE version 2 fragments is 128.

Question 15

Exhibit.

Refer to the exhibit, which contains a partial policy configuration.

Which setting must you configure to allow SSH?

Options:

A.

Specify SSH in the Service field

B.

Configure pot 22 in the Protocol Options field.

C.

Include SSH in the Application field

D.

Select an application control profile corresponding to SSH in the Security Profiles section