Fortinet NSE7_PBC-6.4 Exam Practice Questions (P. 2)
- Full Access (30 questions)
- One Year of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #6

Refer to the exhibit. You are deploying a FortiGate-VM in Microsoft Azure using the PAYG/On-demand licensing model. After you configure the FortiGate-VM, the validation process fails, displaying the error shown in the exhibit.
What caused the validation process to fail?
- AYou selected the incorrect resource group.
- BYou selected the Bring Your Own License (BYOL) licensing mode.
- CYou selected the PAYG/On-demand licensing model, but did not select correct virtual machine size.
- DYou selected the PAYG/On-demand licensing model, but did not associate a valid Azure subscription.Most Voted
Correct Answer:
B
Reference:
https://docs.fortinet.com/document/fortiweb-public-cloud/6.4.0/deploying-auto-scaling-on-azure/9139/frequently-asked-questions
B
Reference:
https://docs.fortinet.com/document/fortiweb-public-cloud/6.4.0/deploying-auto-scaling-on-azure/9139/frequently-asked-questions
send
light_mode
delete
Question #7
An Amazon Web Services (AWS) auto-scale FortiGate cluster has just experienced a scale-down event, terminating a FortiGate in availability zone C.
This has now black-holed the private subnet in this availability zone.
What action will the worker node automatically perform to restore access to the black-holed subnet?
This has now black-holed the private subnet in this availability zone.
What action will the worker node automatically perform to restore access to the black-holed subnet?
- AThe worker node applies a route table from a non-black-holed subnet to the black-holed subnet.
- BThe worker node moves the virtual IP of the terminated FortiGate to a running FortiGate on the worker node's private subnet interface.
- CThe worker node modifies the route table applied to the black-holed subnet changing its default route to point to a running FortiGate on the worker node's private subnet interface.Most Voted
- DThe worker node migrates the subnet to a different availability zone.
Correct Answer:
C
C
send
light_mode
delete
Question #8
Which two statements about the Amazon Cloud Services (AWS) network access control lists (ACLs) are true? (Choose two.)
- ANetwork ACLs are stateless, and inbound and outbound rules are used for traffic filtering.Most Voted
- BNetwork ACLs are stateful, and inbound and outbound rules are used for traffic filtering.
- CNetwork ACLs must be manually applied to virtual network interfaces.
- DNetwork ACLs support allow rules and deny rules.Most Voted
Correct Answer:
AD
Reference:
https://docs.aws.amazon.com/vpc/latest/userguide/vpc-network-acls.html
AD
Reference:
https://docs.aws.amazon.com/vpc/latest/userguide/vpc-network-acls.html
send
light_mode
delete
Question #9
When an organization deploys a FortiGate-VM in a high availability (HA) (active/active) architecture in Microsoft Azure, they need to determine the default timeout values of the load balancer probes.
In the event of failure, how long will Azure take to mark a FortiGate-VM as unhealthy, considering the default timeout values?
In the event of failure, how long will Azure take to mark a FortiGate-VM as unhealthy, considering the default timeout values?
send
light_mode
delete
Question #10
Which three properties are configurable Microsoft Azure network security group rule settings? (Choose three.)
- AActionMost Voted
- BSequence number
- CSource and destination IP rangesMost Voted
- DDestination port rangesMost Voted
- ESource port ranges
Correct Answer:
ADE
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/network-security-groups-overview
ADE
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/network-security-groups-overview
send
light_mode
delete
All Pages
