Free NSE7-SDW-7-2 Fortinet NSE7-SDW-7-2 Practice Test Question

Loading demo links...

Showing 1–3 of 7 questions

Question 1 (Topic 1)

Refer to the exhibit. The exhibit shows output of the command diagnose sys sdwan service collected on a FortiGate device. The administrator wants to know through which interface FortiGate will steer the traffic from local users on subnet 10.0.1.0/255.255.255.192 and with a destination of the business application Salesforce located on HQ servers 10.0.0.1. Based on the exhibits, which two statements are correct? (Choose two.)

Select an option, then click Submit answer.

  • There is no service defined for the Salesforce application, so FortiGate will use the service rule 3 and steer the traffic through interface T_HQ1.
  • FortiGate steers traffic to HQ servers according to service rule 1 and it uses port1 or port2 because both interfaces are selected.
  • When FortiGate cannot recognize the application of the flow it steers the traffic destined to server 10.0.0.1 according to service rule 3.
  • FortiGate steers traffic for business application according to service rule 2 and steers traffic through port2.
Question 2 (Topic 1)

Refer to the exhibits. Exhibit A. Exhibit B. An administrator is testing application steering in SD-WAN. Before generating test traffic, the administrator collected the information shown in exhibit A. After generating GoToMeeting test traffic, the administrator examined the respective traffic log on FortiAnalyzer, which is shown in exhibit B. The administrator noticed that the traffic matched the implicit SD-WAN rule, but they expected the traffic to match rule ID 1. Which two reasons explain why some log messages show that the traffic matched the implicit SD-WAN rule? (Choose two.)

Select an option, then click Submit answer.

  • Port1 and port2 do not have a valid route to the destination.
  • The session 3-tuple did not match any of the existing entries in the ISDB application cache.
  • Full SSL inspection is not enabled on the matching firewall policy.
  • FortiGate did not refresh the routing information on the session after the application was detected.
Question 3 (Topic 1)

Refer to the exhibits. Exhibit A - Exhibit B - Exhibit A shows the SD-WAN performance SLA and exhibit B shows the SD-WAN member status, the routing table, and the performance SLA status. If port2 is detected dead by FortiGate, what is the expected behavior?

Select an option, then click Submit answer.

  • Host 8.3.8.8 is reachable through port1 and port2.
  • Port2 becomes alive after three successful probes are detected.
  • The administrator manually restores the static routes for port2, if port2 becomes alive.
  • FortiGate disables all static routes for port2.