ExamGecko
Home Home / Fortinet / NSE6_FSW-7.2

Fortinet NSE6_FSW-7.2 Practice Test - Questions Answers, Page 2

Question list
Search
Search

List of questions

Search

Related questions











Which two statements about the FortiLink authorization process are true? (Choose two.)

A.
The administrator must manually pre-authorize FortiGate on FortiSwitch by adding the FortiGate serial number.
A.
The administrator must manually pre-authorize FortiGate on FortiSwitch by adding the FortiGate serial number.
Answers
B.
FortiSwitch requires a reboot to complete the authorization process.
B.
FortiSwitch requires a reboot to complete the authorization process.
Answers
C.
A FortiLink frame is sent by FortiGate to FortiSwitch to complete the authorization.
C.
A FortiLink frame is sent by FortiGate to FortiSwitch to complete the authorization.
Answers
D.
FortiLink authorization sets the FortiSwitch management mode to FortiLink.
D.
FortiLink authorization sets the FortiSwitch management mode to FortiLink.
Answers
Suggested answer: C, D

Refer to the exhibits

Traffic arriving on port2 on FortiSwitch is tagged with VLAN ID 10 and destined for PC1 connected on port1. PC1 expects to receive traffic untagged from port1 on FortiSwitch.

Which two configurations can you perform on FortiSwitch to ensure PC1 receives untagged traffic on port1? (Choose two.)

A.
Add the MAC address of PCI as a member of VLAN 10.
A.
Add the MAC address of PCI as a member of VLAN 10.
Answers
B.
Add VLAN ID 10 as a member of the untagged VLANs on port1.
B.
Add VLAN ID 10 as a member of the untagged VLANs on port1.
Answers
C.
Remove VLAN 10 from the allowed VLANs and add it to untagged VLANs on port1.
C.
Remove VLAN 10 from the allowed VLANs and add it to untagged VLANs on port1.
Answers
D.
Enable Private VLAN on VLAN 10 and add VLAN 20 as an isolated VLAN.
D.
Enable Private VLAN on VLAN 10 and add VLAN 20 as an isolated VLAN.
Answers
Suggested answer: A, B

Refer to the exhibits.

Port1 and port2 are the only ports configured with the same native VLAN 10.

What are two reasons that can trigger port1 to shut down? (Choose two.)

A.
port1 was shut down by loop guard protection.
A.
port1 was shut down by loop guard protection.
Answers
B.
STP triggered a loop and applied loop guard protection on port1.
B.
STP triggered a loop and applied loop guard protection on port1.
Answers
C.
An endpoint sent a BPDU on port1 that it received from another interface.
C.
An endpoint sent a BPDU on port1 that it received from another interface.
Answers
D.
Loop guard frame sourced from port 1 was received on port 1.
D.
Loop guard frame sourced from port 1 was received on port 1.
Answers
Suggested answer: B, C

Refer to the diagnostic output:

What makes the use of the sniffer command on the FortiSwitch CLI unreliable on__port__23?

A.
The types of packets captured is limited.
A.
The types of packets captured is limited.
Answers
B.
Just the port egress payloads are printed on CLI.
B.
Just the port egress payloads are printed on CLI.
Answers
C.
Only untagged VLAN traffic can be captured.
C.
Only untagged VLAN traffic can be captured.
Answers
D.
The switch port might be used as a trunk member
D.
The switch port might be used as a trunk member
Answers
Suggested answer: A

Which interfaces on FortiSwitch send out FortiLink discovery frames by default in order to detect a FortiGate with an enabled FortiLink interface?

A.
All ports have auto-discovery enabled by default.
A.
All ports have auto-discovery enabled by default.
Answers
B.
No ports are enabled by default for auto-discovery. This must be configured under config switch interface.
B.
No ports are enabled by default for auto-discovery. This must be configured under config switch interface.
Answers
C.
The ports with auto-discovery enabled by default are dependent upon the FortiSwitch model.
C.
The ports with auto-discovery enabled by default are dependent upon the FortiSwitch model.
Answers
D.
The last four switch ports on FortiSwitch have auto-discovery enabled by default.
D.
The last four switch ports on FortiSwitch have auto-discovery enabled by default.
Answers
Suggested answer: A

Which LLDP-MED Type-Length-Values does FortiSwitch collect from endpoints to track network devices and determine their characteristics?

A.
Network policy
A.
Network policy
Answers
B.
Power management
B.
Power management
Answers
C.
Location
C.
Location
Answers
D.
Inventory management
D.
Inventory management
Answers
Suggested answer: D

Refer to the exhibit.

What two conclusions can be made regarding DHCP snooping configuration? (Choose two.)

A.
Maximum value to accept clients DHCP request is configured as per DHCP server range.
A.
Maximum value to accept clients DHCP request is configured as per DHCP server range.
Answers
B.
FortiSwitch is configured to trust DHCP replies coming on FortiLink interface.
B.
FortiSwitch is configured to trust DHCP replies coming on FortiLink interface.
Answers
C.
DHCP clients that are trusted by DHCP snooping configured is only one.
C.
DHCP clients that are trusted by DHCP snooping configured is only one.
Answers
D.
Global configuration for DHCP snooping is set to forward DHCP client requests on all ports in the VLAN.
D.
Global configuration for DHCP snooping is set to forward DHCP client requests on all ports in the VLAN.
Answers
Suggested answer: B, C

What are two reasons why time synchronization between FortiGate and its managed FortiSwitch is critical in switch management? (Choose two.)

A.
FortiSwitch does not retain its time after a reboot, which gets reset after each reboot.
A.
FortiSwitch does not retain its time after a reboot, which gets reset after each reboot.
Answers
B.
FortiSwitch will not be able to become an NTP server for downstream devices.
B.
FortiSwitch will not be able to become an NTP server for downstream devices.
Answers
C.
FortiSwitch cannot complete the DTLS handshake used in the CAPWAP tunnel.
C.
FortiSwitch cannot complete the DTLS handshake used in the CAPWAP tunnel.
Answers
D.
FortiSwitch will not allow other FortiSwitch devices in the chain be discovered by FortiGate.
D.
FortiSwitch will not allow other FortiSwitch devices in the chain be discovered by FortiGate.
Answers
Suggested answer: A, C

Which statement about the quarantine VLAN on FortiSwitch is true?

A.
Quarantine VLAN has no DHCP server
A.
Quarantine VLAN has no DHCP server
Answers
B.
Users who fail 802.1X authentication can be placed on the quarantine VLAN.
B.
Users who fail 802.1X authentication can be placed on the quarantine VLAN.
Answers
C.
It is only used for quarantined devices if global setting is set to quarantine by VLAN.
C.
It is only used for quarantined devices if global setting is set to quarantine by VLAN.
Answers
D.
FortiSwitch can block devices without configuring quarantine VLAN to be part of the allowed VLANs.
D.
FortiSwitch can block devices without configuring quarantine VLAN to be part of the allowed VLANs.
Answers
Suggested answer: C

Refer to the exhibit.

The exhibit shows the current status of the ports on the managed FortiSwitch. Access-1.

Why would FortiGate display a serial number in the Native VLAN column associated with the port23 entry?

A.
port23 is configured as the dedicated management interface.
A.
port23 is configured as the dedicated management interface.
Answers
B.
Ports connected to adjacent FortiSwitch devices show their serial number as the native VLAN.
B.
Ports connected to adjacent FortiSwitch devices show their serial number as the native VLAN.
Answers
C.
port23 is a member of a trunk that uses the Access-1 FortiSwitch serial number as the name of the trunk.
C.
port23 is a member of a trunk that uses the Access-1 FortiSwitch serial number as the name of the trunk.
Answers
D.
A standalone switch with the shown serial number is connected on port23.
D.
A standalone switch with the shown serial number is connected on port23.
Answers
Suggested answer: D
Total 56 questions
Go to page: of 6