Pass the Fortinet Fortinet Certified Solution Specialist FCSS_NST_SE-7.6 Questions and answers with CertsForce

Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions
Questions # 11:

Refer to the exhibit, which shows a truncated output of a real-time LDAP debug.

Question # 11

What two conclusions can you draw from the output? (Choose two.)

Options:

A.

The name of the configured LDAP server is Lab.


B.

The user is authenticating using CN=John Smith.


C.

FortiOS is able to locate the user in step 3 (Bind Request) of the LDAP authentication process.


D.

FortiOS is performing the second step (Search Request) in the LDAP authentication process.


Expert Solution
Questions # 12:

Refer to the exhibit, which shows a partial output from the get router info routing-table database command.

Question # 12

The administrator wants to configure a default static route for port3 and assign a distance of 50 and a priority of 0.

What will happen to the port1 and port2 default static routes after the port3 default static route is created?

Options:

A.

The port2 default static route will be injected into the forwarding information base (FIB).


B.

The port1 default static route will be injected into the FIB.


C.

Neither of the routes shown in the output will be injected into the FIB.


D.

Both default static routes shown in the output will be injected into the FIB.


Expert Solution
Questions # 13:

Which statement about parallel path processing is correct (PPP)?

Options:

A.

PPP chooses from a group of parallel options lo identity the optimal path tor processing a packet.


B.

Only FortiGate hardware configurations affect the path that a packet takes.


C.

PPP does not apply to packets that are part of an already established session.


D.

Software configuration has no impact on PPP.


Expert Solution
Questions # 14:

Refer to the exhibit, which shows the output of a debug command.

Question # 14

Which two statements about the output are true? (Choose two.)

Options:

A.

The interlace is part of the OSPF backbone area.


B.

There are a total of five OSPF routers attached to the vorz4 network segment


C.

One of the neighbors has a router ID of 0.0.0.4.


D.

In the network connected to port4, two OSPF routers are down.


Expert Solution
Questions # 15:

Refer to the exhibit, which shows the output of get router info bgp summary.

Question # 15

Which two statements are true? (Choose two.)

Options:

A.

The local ForliGate has received one prefix from BGP neighbor 100.64.1.254.


B.

The TCP connection with BGP neighbor 100.64.2.254 was successful.


C.

The local FortiGate has received 18 packets from a BGP neighbor.


D.

The local FortiGate is still calculating the prefixes received from BGP neighbor 100.64.2.264


Expert Solution
Questions # 16:

Refer to the exhibit, which shows a partial output of a real-time LDAP debug.

Question # 16

What two conclusions can you draw from the output? (Choose two.)

Options:

A.

The user was found in the LDAP tree, whose root is TAC.ottawa.fortinet.com.


B.

FortiOS performs a bind to the LDAP server using the user's credentials.


C.

FortiOS collects the user group information.


D.

FortiOS is performing the second step (Search Request) in the LDAP authentication process.


Expert Solution
Questions # 17:

What are two reasons you might see iprope_in_check() check failed, drop when using the debug flow? (Choose two.)

Options:

A.

Packet was dropped because of policy route misconfiguration.


B.

Packet was dropped because of traffic shaping.


C.

Trusted host list misconfiguration.


D.

VIP or IP pool misconfiguration.


Expert Solution
Questions # 18:

Refer to the exhibit, which shows the output of get router info ospf neighbor.

Question # 18

What can you conclude from the command output?

Options:

A.

The network type connecting the local Fortigate and OSPF neighbor 0.0.0.10 is point-to-point.


B.

All neighbors are in area 0.0.0.0.


C.

The local FortiGate is the BDR.


D.

The local FortiGate is not a DROther.


Expert Solution
Questions # 19:

Which two statements are true regarding heartbeat messages sent from an FSSO collector agent to FortiGate? (Choose two.)

Options:

A.

The heartbeat messages can be seen using the command diagnose debug authd fsso list.


B.

The heartbeat messages can be seen in the collector agent logs.


C.

The heartbeat messages can be seen on FortiGate using the real-lime FSSO debug.


D.

The heartbeat messages must be manually enabled on FortiGate.


Expert Solution
Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions