Free FCSS-NST-SE-7-4 Fortinet FCSS-NST-SE-7-4 Practice Test Question

Loading demo links...

Showing 4–6 of 8 questions

Question 4 (Topic 1)

What are two reasons that an OSPF router does not have any type 5 link-state advertisements (LSAs) in its link-state database (LSDB)? (Choose two.)

Select an option, then click Submit answer.

  • The local router is located in a stub area.
  • IP protocol 89 is blocked between the local router and its peer.
  • There is no autonomous system border router (ASBR) in the network.
  • The peer of the local router is using a prefix-list-out configuration to prevent all type 5 LSAs to be advertised.
Question 5 (Topic 1)

Refer to the exhibit, which contains a screenshot of some phase 1 settings. The VPN is up. To monitor traffic flow, the administrator enters the following CLI commands on an SSH session on FortiGate: diagnose sniffer packet any 'udp and port 500' 4 diagnose debug enable However, the sniffer does not show any output. Why?

Select an option, then click Submit answer.

  • Change the filter to sniff protocol TCP.
  • It must sniff IP address 10.0.10.1.
  • Change the filter to sniff traffic on port1.
  • NAT Traversal is enabled.
Question 6 (Topic 1)

Refer to the exhibit, which shows the output of a diagnose command. The administrator did not override the FortiGuard FQDN or IP address in the FortiGate configuration. Which IP address did FortiGate get when resolving the service.fortiguard.net name?

Select an option, then click Submit answer.

  • 121.111.236.179
  • 209.22.147.36
  • 208.91.112.194
  • 64.26.151.37