Fortinet NSE7 Exam Practice Questions (P. 3)
- Full Access (86 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #11
Examine the following partial output from a sniffer command; then answer the question below.

What is the meaning of the packets dropped counter at the end of the sniffer?

What is the meaning of the packets dropped counter at the end of the sniffer?
- ANumber of packets that didn't match the sniffer filter.
- BNumber of total packets dropped by the FortiGate.
- CNumber of packets that matched the sniffer filter and were dropped by the FortiGate.
- DNumber of packets that matched the sniffer filter but could not be captured by the sniffer.
Correct Answer:
D
D
send
light_mode
delete
Question #12
A FortiGate is configured as an explicit web proxy. Clients using this web proxy are reposting DNS errors when accessing any website. The administrator executes the following debug commands and observes that the n-dns-timeout counter is increasing:

What should the administrator check to fix the problem?

What should the administrator check to fix the problem?
- AThe connectivity between the FortiGate unit and the DNS server.Most Voted
- BThe connectivity between the client workstations and the DNS server.
- CThat DNS traffic from client workstations is allowed by the explicit web proxy policies.
- DThat DNS service is enabled in the explicit web proxy interface.
Correct Answer:
AB
AB
send
light_mode
delete
Question #13
Which real time debug should an administrator enable to troubleshoot RADIUS authentication problems?
- ADiagnose debug application radius -1.
- BDiagnose debug application fnbamd -1.Most Voted
- CDiagnose authd console ""log enable.
- DDiagnose radius console ""log enable.
Correct Answer:
A
A
send
light_mode
delete
Question #14
Examine the output of the "˜diagnose sys session list expectation' command shown in the exhibit; than answer the question below.

Which statement is true regarding the session in the exhibit?

Which statement is true regarding the session in the exhibit?
- AIt was created by the FortiGate kernel to allow push updates from FotiGuard.
- BIt is for management traffic terminating at the FortiGate.
- CIt is for traffic originated from the FortiGate.
- DIt was created by a session helper or ALG.Most Voted
Correct Answer:
D
D
send
light_mode
delete
Question #15
An administrator has configured a FortiGate device with two VDOMs: root and internal. The administrator has also created and inter-VDOM link that connects both
VDOMs. The objective is to have each VDOM advertise some routes to the other VDOM via OSPF through the inter-VDOM link. What OSPF configuration settings must match in both VDOMs to have the OSPF adjacency successfully forming? (Choose three.)
VDOMs. The objective is to have each VDOM advertise some routes to the other VDOM via OSPF through the inter-VDOM link. What OSPF configuration settings must match in both VDOMs to have the OSPF adjacency successfully forming? (Choose three.)
- ARouter ID.
- BOSPF interface area.Most Voted
- COSPF interface cost.
- DOSPF interface MTU.Most Voted
- EInterface subnet mask.Most Voted
Correct Answer:
BDE
BDE
send
light_mode
delete
All Pages