Free NSE7-LED-7-0 Fortinet NSE7-LED-7-0 Practice Test Question

Loading demo links...

Showing 1–3 of 6 questions

Question 1 (Topic 1)

Refer to the exhibit. Examine the FortiGate user group configuration and the Windows AD LDAP group membership information shown in the exhibit. FortiGate is configured to authenticate SSL VPN users against Windows AD using LDAP. The administrator configured the SSL VPN user group for SSL VPN users. However, the administrator noticed that both the t and student and jsmith users can connect to SSL VPN. Which change can the administrator make on FortiGate to restrict the SSL VPN service to the student user only?

Select an option, then click Submit answer.

  • In the SSL VPN user group configuration, set Group Name to CN=SSLVPN,CN=Users,DC=trainingAD,DC=training,DC=lab.
  • In the SSL VPN user group configuration, change Name to CN=SSLVPN,CN=Users,DC=trainingAD,DC=training,DC=lab.
  • In the SSL VPN user group configuration, set Group Name to CN=Domain Users,CN=Users,DC=trainingAD,DC=training,DC=lab.
  • In the SSL VPN user group configuration, change Type to Fortinet Single Sign-On (FSSO).
Question 2 (Topic 1)

Which CLI command should an administrator use to view the certificate verification process in real time?

Select an option, then click Submit answer.

  • diagnose debug application foauthd -1
  • diagnose debug application radiusd -1
  • diagnose debug application authd -1
  • diagnose debug application fnbamd -1
Question 3 (Topic 1)

You are setting up an SSID (VAP) to perform RADIUS-authenticated dynamic VLAN allocation. Which three RADIUS attributes must be supplied by the RADIUS server to enable successful VLAN allocation? (Choose three.)

Select an option, then click Submit answer.

  • Tunnel-Private-Group-ID
  • Tunnel-Pvt-Group-ID
  • Tunnel-Preference
  • Tunnel-Type
  • Tunnel-Medium-Type