View the exhibit, which contains the output of a debug command, and then answer the question below.

Which of the following statements about the exhibit are true? (Choose two.)
A. The local FortiGate has been elected as the OSPF backup designated router.
B. In the network on port4, two OSPF routers are down.
C. The local FortiGate's OSPF router ID is 0.0.0.4
D. Port4 is connected to the OSPF backbone area.
正解:C,D
質問 2:
Refer to the exhibit, which contains partial output from an IKE real-time debug.

Which two statements about this debug output are correct? (Choose two.)
A. The initiator provided remote as its IPsec peer ID.
B. The negotiation is using AES128 encryption with CBC hash.
C. The remote gateway IP address is 10.0.0.1.
D. It shows a phase 1 negotiation.
正解:A,D
質問 3:
View the exhibit, which contains the output of a BGP debug command, and then answer the question below.

Which of the following statements about the exhibit are true? (Choose two.)
A. The local BGP peer has received a total of three BGP prefixes.
B. Since the BGP counters were last reset, the BGP peer 10.200.3.1 has never been down.
C. The local BGP peer has not established a TCP session to the BGP peer 10.200.3.1.
D. For the peer 10.125.0.60, the BGP state of is Established.
正解:C,D
質問 4:
View the exhibit, which contains the output of a real-time debug, Which statement about this output is true?

Which of the following statements is true regarding this output?
A. The requested URL belongs to category ID 255.
B. FortiGate found the requested URL in its local cache.
C. The server hostname Is training, fortinet.com.
D. This web request was inspected using the ftgd-allow web filler profile.
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
Refer to the exhibit, which shows the output of a diagnose command

What can you conclude from the RTT value?
A. Its initial value is statically set to 10.
B. It determines which FortiGuard server is used for license validation.
C. Its value represents the time it takes to receive a response after a rating request is sent to a particular server.
D. Its value is incremented with each packet lost.
正解:C
質問 6:
Refer to the exhibit, which contains partial outputs from two routing debug commands.

Why is the port2 default route not in the second command's output?
A. It has a higher distance than the default route using port1.
B. It has a higher priority value than the default route using port1.
C. It has a lower priority value than the default route using port1.
D. It is disabled in the FortiGate configuration.
正解:A
質問 7:
Which two configuration settings change the behavior for content-inspected traffic while FortiGate is in conserve mode? (Choose two.)
A. IPS failopen
B. mem failopen
C. AV failopen
D. UTM failopen
正解:A,C
質問 8:
Which statement about IKE and IKE NAT-T is true?
A. They both use UDP as their transport protocol and the port number is configurable.
B. IKE is used to encapsulate ESP traffic in some situations, and IKE NAT-T is used only when the local FortiGate is using NAT on the IPsec interface.
C. IKE is the standard implementation for IKEv1 and IKE NAT-T is an extension added in IKEv2.
D. They each use their own IP protocol number.
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
杉本** -
過去問もついています。NSE7_EFW-7.0とても見やすく内容もわかりやすい.
何よりわかり易いですし、社会人として一般教養と言っても良い内容だと思いました。