Free NSE7_EFW-6.4 Exam Braindumps (page: 10)

Page 10 of 26

An administrator has configured two FortiGate devices for an HA cluster. While testing the HA failover, the administrator noticed that some of the switches in the network continue to send traffic to the former primary unit. The administrator decides to enable the setting link- failed-signal to fix the problem. Which statement is correct regarding this command?

  1. Forces the former primary device to shut down all its non-heartbeat interfaces forone second while the failover occurs.
  2. Sends an ARP packet to all connected devices, indicating that the HA virtual MAC address is reachable through a new master after a failover.
  3. Sends a link failed signal to all connected devices.
  4. Disables all the non-heartbeat interfaces in all the HA members for two seconds after a failover.

Answer(s): A



Refer to the exhibit, which contains partial outputs from two routing debug commands.



Why is the port2 default route not in the second command's output?

  1. It has a higher priority value than the default route using port1.
  2. It is disabled in the FortiGate configuration.
  3. It has a lowerpriority value than the default route using port1.
  4. It has a higher distance than the default route using port1.

Answer(s): D



View the exhibit, which contains the output of a debug command, and then answer the question below.



What statement is correct about this FortiGate?

  1. It iscurrently in system conserve mode because of high CPU usage.
  2. It is currently in FD conserve mode.
  3. It is currently in kernel conserve mode because of high memory usage.
  4. It is currently in system conserve mode because of high memory usage.

Answer(s): D



Examine the output ofthe `get router info bgp summary' command shown in the exhibit; then answer the question below.



Which statement can explain why the state of the remote BGP peer 10.200.3.1 is Connect?

  1. The local peer is receiving the BGP keepalives from the remote peer but it has not received any BGP prefix yet.
  2. The TCP session for the BGP connection to 10.200.3.1 is down.
  3. The local peer has received the BGP prefixed from the remote peer.
  4. The local peer is receiving the BGP keepalives from the remote peer but it has not received the OpenConfirm yet.

Answer(s): B


Reference:

http://www.ciscopress.com/articles/article.asp?p=2756480&seqNum=4



Page 10 of 26



Post your Comments and Discuss Fortinet NSE7_EFW-6.4 exam with other Community members:

Jonathan commented on June 23, 2022
Thank you brain-dumps team. Your exam dump helped me pass the exam.
UNITED STATES
upvote