Free NSE7_EFW-6.2 Exam Braindumps (page: 2)

Page 1 of 24

What global configuration setting changes the behavior for content-inspected traffic while FortiGate is in system conserve mode?

  1. av-failopen
  2. mem-failopen
  3. utm-failopen
  4. ips-failopen

Answer(s): A

Explanation:

https://help.fortinet.com/fos50hlp/54/Content/FortiOS/fortigate-security-profiles-54/Other_Profile_Considerations/Conserve%20mode.htm



An administrator has configured a dial-up IPsec VPN with one phase 2, extended authentication (XAuth) and IKE mode configuration. The administrator has also enabled the IKE real time debug:
diagnose debug application ike-1
diagnose debug enable
In which order is each step and phase displayed in the debug output each time a new dial-up user is connecting to the VPN?

  1. Phase1; IKE mode configuration; XAuth; phase 2.
  2. Phase1; XAuth; IKE mode configuration; phase2.
  3. Phase1; XAuth; phase 2; IKE mode configuration.
  4. Phase1; IKE mode configuration; phase 2; XAuth.

Answer(s): B

Explanation:

https://help.fortinet.com/fos50hlp/54/Content/FortiOS/fortigate-ipsecvpn-54/IPsec_VPN_Concepts/IKE_Packet_Processing.htm



View the exhibit, which contains the output of a diagnose command, and the answer the question below.
Which statements are true regarding the Weight value?

  1. Its initial value is calculated based on theround trip delay (RTT).
  2. Its initial value is statically set to 10.
  3. Its value is incremented with each packet lost.
  4. It determines which FortiGuard server is used for license validation.

Answer(s): C



A FortiGate device has the following LDAP configuration:

The LDAP user student cannotauthenticate. The exhibit shows the output of the authentication real time debug while testing the student account:

Based on the above output, what FortiGate LDAP settings must the administer check? (Choose two.)

  1. cnid.
  2. username.
  3. password.
  4. dn.

Answer(s): B,C

Explanation:

https://kb.fortinet.com/kb/viewContent.do?externalId=13141






Post your Comments and Discuss Fortinet NSE7_EFW-6.2 exam with other Community members:

NSE7_EFW-6.2 Discussions & Posts