ExamGecko
Home Home / Fortinet / NSE7_SDW-7.2

Fortinet NSE7_SDW-7.2 Practice Test - Questions Answers

Question list
Search
Search

Related questions











Which are two benefits of using CLI templates in FortiManager? (Choose two.)

A.
You can reference meta fields.
A.
You can reference meta fields.
Answers
B.
You can configure interfaces as SD-WAN members without having to remove references first.
B.
You can configure interfaces as SD-WAN members without having to remove references first.
Answers
C.
You can configure FortiManager to sync local configuration changes made on the managed device, to the CLI template.
C.
You can configure FortiManager to sync local configuration changes made on the managed device, to the CLI template.
Answers
D.
You can configure advanced CLI settings.
D.
You can configure advanced CLI settings.
Answers
Suggested answer: A, D

Refer to the exhibit.

The device exchanges routes using IBGP.

Which two statements are correct about the IBGP configuration and routing information on the device? (Choose two.)

A.
Each BGP route is three hops away from the destination.
A.
Each BGP route is three hops away from the destination.
Answers
B.
ibgp-multipath is disabled.
B.
ibgp-multipath is disabled.
Answers
C.
additional-path is enabled.
C.
additional-path is enabled.
Answers
D.
You can run the get router info routing-table database command to display the additional paths.
D.
You can run the get router info routing-table database command to display the additional paths.
Answers
Suggested answer: C, D

Refer to the exhibits.

Exhibit A -

Exhibit B -

Exhibit A shows the SD-WAN performance SLA and exhibit B shows the SD-WAN member status, the routing table, and the performance SLA status.

If port2 is detected dead by FortiGate, what is the expected behavior?

A.
Port2 becomes alive after three successful probes are detected.
A.
Port2 becomes alive after three successful probes are detected.
Answers
B.
FortiGate removes all static routes for port2.
B.
FortiGate removes all static routes for port2.
Answers
C.
The administrator manually restores the static routes for port2, if port2 becomes alive.
C.
The administrator manually restores the static routes for port2, if port2 becomes alive.
Answers
D.
Host 8.8.8.8 is reachable through port1 and port2.
D.
Host 8.8.8.8 is reachable through port1 and port2.
Answers
Suggested answer: B

Explanation:

This is due to Update static route is enable which removes the static route entry referencing the interface if the interface is dead

Which best describes the SD-WAN traffic shaping mode that bases itself on a percentage of available bandwidth?

A.
Interface-based shaping mode
A.
Interface-based shaping mode
Answers
B.
Reverse-policy shaping mode
B.
Reverse-policy shaping mode
Answers
C.
Shared-policy shaping mode
C.
Shared-policy shaping mode
Answers
D.
Per-IP shaping mode
D.
Per-IP shaping mode
Answers
Suggested answer: A

Explanation:

Interface-based shaping goes further, enabling traffic controls based on percentage of the interface bandwidth.

In a hub-and-spoke topology, what are two advantages of enabling ADVPN on the IPsec overlays? (Choose two.)

A.
It provides the benefits of a full-mesh topology in a hub-and-spoke network.
A.
It provides the benefits of a full-mesh topology in a hub-and-spoke network.
Answers
B.
It provides direct connectivity between spokes by creating shortcuts.
B.
It provides direct connectivity between spokes by creating shortcuts.
Answers
C.
It enables spokes to bypass the hub during shortcut negotiation.
C.
It enables spokes to bypass the hub during shortcut negotiation.
Answers
D.
It enables spokes to establish shortcuts to third-party gateways.
D.
It enables spokes to establish shortcuts to third-party gateways.
Answers
Suggested answer: A, B

Which action fortigate performs on the traffic that is subject to a per-IP traffic shaper of 10 Mbps?

A.
FortiGate applies traffic shaping to the original traffic direction only.
A.
FortiGate applies traffic shaping to the original traffic direction only.
Answers
B.
FortiGate shares 10 Mbps of bandwidth equally among all source IP addresses. RIAS
B.
FortiGate shares 10 Mbps of bandwidth equally among all source IP addresses. RIAS
Answers
C.
Fortigate limits each source ip address to a maximum bandwidth of 10 Mbps.
C.
Fortigate limits each source ip address to a maximum bandwidth of 10 Mbps.
Answers
D.
FortiGate guarantees a minimum of 10 Mbps of bandwidth to each source IP address.
D.
FortiGate guarantees a minimum of 10 Mbps of bandwidth to each source IP address.
Answers
Suggested answer: C

Refer to the Exhibits:

Exhibit A, which shows the SD-WAN performance SLA and exhibit B shows the health of the participating SD-WAN members.

Based on the exhibits, which statement is correct?

A.
The dead member interface stays unavailable until an administrator manually brings the interface back.
A.
The dead member interface stays unavailable until an administrator manually brings the interface back.
Answers
B.
Port2 needs to wait 500 milliseconds to change the status from alive to dead.
B.
Port2 needs to wait 500 milliseconds to change the status from alive to dead.
Answers
C.
Static routes using port2 are active in the routing table.
C.
Static routes using port2 are active in the routing table.
Answers
D.
FortiGate has not received three consecutive requests from the SLA server configured for port2.
D.
FortiGate has not received three consecutive requests from the SLA server configured for port2.
Answers
Suggested answer: C

Which statement about using BGP routes in SD-WAN is true?

A.
Learned routes can be used as dynamic destinations in SD-WAN rules.
A.
Learned routes can be used as dynamic destinations in SD-WAN rules.
Answers
B.
You must use BGP to route traffic for both overlay and underlay links.
B.
You must use BGP to route traffic for both overlay and underlay links.
Answers
C.
You must configure AS path prepending.
C.
You must configure AS path prepending.
Answers
D.
You must use external BGP.
D.
You must use external BGP.
Answers
Suggested answer: A

Which two statements reflect the benefits of implementing the ADVPN solution to replace conventional VPN topologies? (Choose two.)

A.
It creates redundant tunnels between hub-and-spokes, in case failure takes place on the primary links.
A.
It creates redundant tunnels between hub-and-spokes, in case failure takes place on the primary links.
Answers
B.
It dynamically assigns cost and weight between the hub and the spokes, based on the physical distance.
B.
It dynamically assigns cost and weight between the hub and the spokes, based on the physical distance.
Answers
C.
It ensures that spoke-to-spoke traffic no longer needs to flow through the tunnels through the hub.
C.
It ensures that spoke-to-spoke traffic no longer needs to flow through the tunnels through the hub.
Answers
D.
It provides direct connectivity between all sites by creating on-demand tunnels between spokes.
D.
It provides direct connectivity between all sites by creating on-demand tunnels between spokes.
Answers
Suggested answer: C, D

Which two statements about SD-WAN central management are true? (Choose two.)

A.
It does not allow you to monitor the status of SD-WAN members.
A.
It does not allow you to monitor the status of SD-WAN members.
Answers
B.
It is enabled or disabled on a per-ADOM basis.
B.
It is enabled or disabled on a per-ADOM basis.
Answers
C.
It is enabled by default.
C.
It is enabled by default.
Answers
D.
It uses templates to configure SD-WAN on managed devices.
D.
It uses templates to configure SD-WAN on managed devices.
Answers
Suggested answer: B, D
Total 97 questions
Go to page: of 10