Free NSE7_EFW-7.0 Exam Braindumps (page: 3)

Page 3 of 42

What are two functions of automation stitches? (Choose two.)

  1. Automation stitches can be configured on any FortiGate device in a Security Fabric environment.
  2. An automation stitch configured to execute actions sequentially can take parameters from previous actions as input for the current action.
  3. Automation stitches can be created to run diagnostic commands and attach the results to an email message when CPU or memory usage exceeds specified thresholds.
  4. An automation stitch configured to execute actions in parallel can be set to insert a specific delay between actions.

Answer(s): B,C

Explanation:

Enterprise_Firewall_7.0_Study_Guide-Online.pdf p 23, 26



Refer to the exhibit, which shows a partial web filter profile configuration.



Which action will FortiGate take if a user attempts to access www.dropbox.com, which is categorized as File Sharing and Storage?

  1. FortiGate will block the connection, based on the FortiGuard category based filter configuration.
  2. FortiGate will block the connection as an invalid URL.
  3. FortiGate will exempt the connection, based on the Web Content Filter configuration.
  4. FortiGate will allow the connection, based on the URL Filter configuration.

Answer(s): A

Explanation:

Enterprise_Firewall_7.0_Study_Guide-Online.pdf p 351 url filter -> FortiGuard Web Filter -> Web Content Filter -> Advanced Filter Options Allow -> Block



Refer to the exhibit, which contains the partial output of the get vpn ipsec tunnel details command.



Based on the output, which two statements are correct? (Choose two.)

  1. The npu_flag for this tunnel is 03.
  2. Different SPI values are a result of auto-negotiation being disabled for phase 2 selectors.
  3. Anti-replay is enabled.
  4. The npu_flag for this tunnel is 02.

Answer(s): A,C



Refer to the exhibit, which shows a session table entry.



Which statement about FortiGate behavior relating to this session is true?

  1. FortiGate redirected the client to the captive portal to authenticate, so that a correct policy match could be made.
  2. FortiGate forwarded this session without any inspection.
  3. FortiGate is performing security profile inspection using the CPU. Most Voted
  4. FortiGate applied only IPS inspection to this session.

Answer(s): C

Explanation:

Enterprise_Firewall_7.0_Study_Guide-Online.pdf p 91, 92 First digit of "proto_state" value at 1 and considering all counters are at 0 for HW acceleration means CPU usage






Post your Comments and Discuss Fortinet NSE7_EFW-7.0 exam with other Community members:

NSE7_EFW-7.0 Exam Discussions & Posts