Fortinet NSE6_FWF-6.4 Exam Practice Questions (P. 2)
- Full Access (30 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #6
When configuring a wireless network for dynamic VLAN allocation, which three IETF attributes must be supplied by the radius server? (Choose three.)
- A81 Tunnel-Private-Group-IDMost Voted
- B65 Tunnel-Medium-TypeMost Voted
- C83 Tunnel-Preference
- D58 Egress-VLAN-Name
- E64 Tunnel-TypeMost Voted
Correct Answer:
ABE
The RADIUS user attributes used for the VLAN ID assignment are:
✑ IETF 64 (Tunnel Type)ג€"Set this to VLAN.
✑ IETF 65 (Tunnel Medium Type)ג€"Set this to 802
✑ IETF 81 (Tunnel Private Group ID)ג€"Set this to VLAN ID.
Reference:
https://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-vlan/71683-dynamicvlan-config.html
ABE
The RADIUS user attributes used for the VLAN ID assignment are:
✑ IETF 64 (Tunnel Type)ג€"Set this to VLAN.
✑ IETF 65 (Tunnel Medium Type)ג€"Set this to 802
✑ IETF 81 (Tunnel Private Group ID)ג€"Set this to VLAN ID.
Reference:
https://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-vlan/71683-dynamicvlan-config.html
send
light_mode
delete
Question #7
Which two phases are part of the process to plan a wireless design project? (Choose two.)
- AProject information phaseMost Voted
- BHardware selection phase
- CSite survey phaseMost Voted
- DInstallation phase
Correct Answer:
CD
Reference:
https://www.sciencedirect.com/topics/computer-science/wireless-site-survey https://www.automation.com/en-us/articles/2015-2/wireless-device-network-planning-and-design
CD
Reference:
https://www.sciencedirect.com/topics/computer-science/wireless-site-survey https://www.automation.com/en-us/articles/2015-2/wireless-device-network-planning-and-design
send
light_mode
delete
Question #8
When enabling security fabric on the FortiGate interface to manage FortiAPs, which two types of communication channels are established between FortiGate and
FortiAPs? (Choose two.)
FortiAPs? (Choose two.)
- AControl channelsMost Voted
- BSecurity channels
- CFortLink channels
- DData channelsMost Voted
Correct Answer:
AD
The control channel for managing traffic, which is always encrypted by DTLS. l The data channel for carrying client data packets.
Reference:
https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/ac61f4d3-ce67-11e9-8977-00505692583a/FortiWiFi_and_FortiAP-6.2-
Cookbook.pdf
AD
The control channel for managing traffic, which is always encrypted by DTLS. l The data channel for carrying client data packets.
Reference:
https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/ac61f4d3-ce67-11e9-8977-00505692583a/FortiWiFi_and_FortiAP-6.2-
Cookbook.pdf
send
light_mode
delete
Question #9
Part of the location service registration process is to link FortiAPs in FortiPresence.
Which two management services can configure the discovered AP registration information from the FortiPresence cloud? (Choose two.)
Which two management services can configure the discovered AP registration information from the FortiPresence cloud? (Choose two.)
- AAP Manager
- BFortiAP CloudMost Voted
- CFortiSwitch
- DFortiGateMost Voted
Correct Answer:
BD
FortiGate, FortiCloud wireless access points (send visitor data in the form of station reports directly to FortiPresence)
Reference:
https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/df877622-c976-11e9-8977-00505692583a/FortiPresence-v4.3-release- notes.pdf
BD
FortiGate, FortiCloud wireless access points (send visitor data in the form of station reports directly to FortiPresence)
Reference:
https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/df877622-c976-11e9-8977-00505692583a/FortiPresence-v4.3-release- notes.pdf
send
light_mode
delete
Question #10
Which two configurations are compatible for Wireless Single Sign-On (WSSO)? (Choose two.)
- AA VAP configured for captive portal authentication
- BA VAP configured for WPA2 or 3 EnterpriseMost Voted
- CA VAP configured to authenticate locally on FortiGate
- DA VAP configured to authenticate using a radius serverMost Voted
Correct Answer:
BD
In the SSID choose WPA2-Enterprise authentication.
WSSO is RADIUS-based authentication that passes the user's user group memberships to the FortiGate.
Reference:
https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/b92a67f9-73a6-11ea-9384-00505692583a/FortiWiFi_and_FortiAP-6.4.2-
Configuration_Guide.pdf
BD
In the SSID choose WPA2-Enterprise authentication.
WSSO is RADIUS-based authentication that passes the user's user group memberships to the FortiGate.
Reference:
https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/b92a67f9-73a6-11ea-9384-00505692583a/FortiWiFi_and_FortiAP-6.4.2-
Configuration_Guide.pdf
send
light_mode
delete
All Pages