Weekend Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

NSE 7 Network Security Architect NSE7_EFW-6.4 Syllabus Exam Questions Answers

Fortinet NSE 7 - Enterprise Firewall 7.0 Questions and Answers

Question 9

Which two configuration settings change the behavior for content-inspected traffic while FortiGate is in conserve mode? (Choose two.)

Options:

A.

IPS failopen

B.

mem failopen

C.

AV failopen

D.

UTM failopen

Question 10

Which statements about bulk configuration changes using FortiManager CLI scripts are correct? (Choose two.)

Options:

A.

When executed on the Policy Package, ADOM database, changes are applied directly to the managed FortiGate.

B.

When executed on the Device Database, you must use the installation wizard to apply the changes to the managed FortiGate.

C.

When executed on the All FortiGate in ADOM, changes are automatically installed without creating a new revision history.

D.

When executed on the Remote FortiGate directly, administrators do not have the option to review the changes prior to installation.

Question 11

Examine the output of the ‘diagnose sys session list expectation’ command shown in the exhibit; than answer the question below.

Which statement is true regarding the session in the exhibit?

Options:

A.

It was created by the FortiGate kernel to allow push updates from FotiGuard.

B.

It is for management traffic terminating at the FortiGate.

C.

It is for traffic originated from the FortiGate.

D.

It was created by a session helper or ALG.

Question 12

View the central management configuration shown in the exhibit, and then answer the question below.

Which server will FortiGate choose for antivirus and IPS updates if 10.0.1.243 is experiencing an outage?

Options:

A.

10.0.1.240

B.

One of the public FortiGuard distribution servers

C.

10.0.1.244

D.

10.0.1.242