Fortinet NSE7_EFW-7.2 Exam Practice Questions (P. 1)
- Full Access (76 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #1
Refer to the exhibit, which contains a TCL script configuration on FortiManager.

An administrator has configured the TCL script on FortiManager, but the TCL script failed to apply any changes to the managed device after being run.
Why did the TCL script fail to make any changes to the managed device?

An administrator has configured the TCL script on FortiManager, but the TCL script failed to apply any changes to the managed device after being run.
Why did the TCL script fail to make any changes to the managed device?
- AThe TCL procedure run_cmd has not been created.Most Voted
- BThe TCL script must start with #include.
- CThere is no corresponding #! to signify the end of the script.
- DThe TCL procedure lacks the required loop statements to iterate through the changes.
Correct Answer:
A
A
send
light_mode
delete
Question #2
You want to improve reliability over a lossy IPSec tunnel.
Which combination of IPSec phase 1 parameters should you configure?
Which combination of IPSec phase 1 parameters should you configure?
- Afec-ingress and fsc-egrsssMost Voted
- Bdpd and dpd-retryinterval
- Cfragmentation and fragmentation-mtu
- Dkeepalive and keylive
Correct Answer:
B
B
send
light_mode
delete
Question #3
How are bulk configuration changes made using FortiManager CLI scripts? (Choose two.)
- AWhen run on the Device Database, changes are applied directly to the managed FortiGate device.
- BWhen run on the Remote FortiGate directly, administrators do not have the option to review the changes prior to installation.Most Voted
- CWhen run on the All FortiGate in ADOM, changes are automatically installed without the creation of a new revision history.
- DWhen run on the Policy Package, ADOM database, you must use the installation wizard to apply the changes to the managed FortiGate device.Most Voted
Correct Answer:
BD
BD
send
light_mode
delete
Question #4
Refer to the exhibit, which contains a partial configuration of the global system.

What can you conclude from this output?

What can you conclude from this output?
- AOnly NPs are disabled
- BOnly CPs are disabled
- CNPs and CPs are enabledMost Voted
- DNPs and CPs are disabled
Correct Answer:
D
D
send
light_mode
delete
Question #5
Refer to the exhibits, which show the configurations of two address objects from the same FortiGate.
Engineering address object -

Finance address object -

Why can you modify the Engineering address object, but not the Finance address object?
Engineering address object -

Finance address object -

Why can you modify the Engineering address object, but not the Finance address object?
- AYou have read-only access.
- BAnother user is editing the Finance address object in workspace mode.Most Voted
- CFortiGate joined the Security Fabric and the Finance address object was configured on the root FortiGate.
- DFortiGate is registered on FortiManager.
Correct Answer:
B
B
send
light_mode
delete
All Pages