Fortinet NSE7_EFW-6.2 Exam Practice Questions (P. 4)
- Full Access (49 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #16
An administrator has configured two FortiGate devices for an HA cluster. While testing the HA failover, the administrator notices that some of the switches in the network continue to send traffic to the former primary unit. The administrator decides to enable the setting link-failed-signal to fix the problem.
Which statement about this command is true?
Which statement about this command is true?
- AIt forces the former primary device to shut down all its non-heartbeat interfaces for one second while the failover occurs.
- BIt disables all the non-heartbeat interfaces in all the HA members for two seconds after a failover.
- CIt sends a link failed signal to all connected devices.
- DIt sends an ARP packet to all connected devices, indicating that the HA virtual MAC address is reachable through a new master after a failover.
Correct Answer:
A
A
send
light_mode
delete
Question #17
What does the dirty flag mean in a FortiGate session?
- AThe session must be removed from the former primary unit after an HA failover.
- BTraffic has been blocked by the antivirus inspection.
- CTraffic has been identified as from an application that is not allowed.
- DThe next packet must be re-evaluated against the firewall policies.
Correct Answer:
D
D
send
light_mode
delete
Question #18
Refer to the exhibit, which contains partial outputs from two routing debug commands.

Which outbound interface will FortiGate use to route web traffic from internal users to the Internet?

Which outbound interface will FortiGate use to route web traffic from internal users to the Internet?
send
light_mode
delete
Question #19
Refer to the exhibit, which contains the output of a debug command.

Which statement about this FortiGate is correct?

Which statement about this FortiGate is correct?
- AIt is currently in system conserve mode because of high CPU usage.
- BIt is currently in extreme conserve mode because of high memory usage.
- CIt is currently in proxy conserve mode because of high memory usage.
- DIt is currently in memory conserve mode because of high memory usage.
Correct Answer:
D
D
send
light_mode
delete
Question #20
How does FortiManager handle FortiGate requests from FortiGate devices, when it is configured as a local FDS?
- AFortiManager will respond to update requests only from a managed device.
- BFortiManager can download and maintain local copies of FortiGuard databases.
- CFortiManager supports only FortiGuard push update to managed devices.
- DFortiManager does not support web filter rating requests.
Correct Answer:
B
B
send
light_mode
delete
All Pages