Pass the Fortinet NSE 6 Network Security Specialist NSE6_FSW-7.2 Questions and answers with CertsForce

Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
Questions # 1:

Which drop policy mode, if assigned to a congested port, will drop incoming packets until there is no congestion on the egress port?

Options:

A.

Tail-drop mode


B.

Weighted round robin mode.


C.

Random early detection mode


D.

Strict mode


Expert Solution
Questions # 2:

How is traffic routed on FortiSwitch?

Options:

A.

Hardware-based routing on FortiSwitch is handled by the CPU.


B.

FortiSwitch looks up the hardware routing table and then the forwarding information base (FIB).


C.

ASIC hardware routing can only handle dynamic routing, if supported.


D.

Layer 3 routing can be configured on FortiSwitch, while managed by FortiGate.


Expert Solution
Questions # 3:

What can an administrator do to maintain a FortiGate-compatible FortiSwitch configuration when changing the management mode from standalone to FortiLinK?

Options:

A.

Use a migration tool based on Python script to convert the configuration.


B.

Enable the FortiLink setting on FortiSwitch before the authorization process.


C.

FortiGate automatically saves the existing FortiSwitch configuration during the FortiLink management process.


D.

Register FortiSwitch to FortiSwitch Cloud to save a copy before managing with FortiGate.


Expert Solution
Questions # 4:

Which statement about 802.1X security profiles using MAC-based authentication mode is true?

Options:

A.

FortiSwitch allows connectivity to all hosts connected to a port, if one host is authenticated.


B.

FortiSwitch can grant each device a different access level based on the credentials provided


C.

FortiSwitch performs faster when using this security mode on the ports.


D.

FortiSwitch must communicate with the RADIUS server to authenticate devices


Expert Solution
Questions # 5:

Which LLDP-MED Type-Length-Values does FortiSwitch collect from endpoints to track network devices and determine their characteristics?

Options:

A.

Network policy


B.

Power management


C.

Location


D.

Inventory management


Expert Solution
Questions # 6:

In which two ways can you assign a FortiSwitch port to a VDOM using multi-tenancy setup? (Choose two.)

Options:

A.

Switch the FortiLink interface to the target VDOM.


B.

Remove the managed FortiSwitch and allocate ports directly on FortiSwitch.


C.

Create a virtual port pool on the FortiGate CLI.


D.

Assign a port to a VDOM directly on the managed FortiSwitch.


Expert Solution
Questions # 7:

What are two ways in which automatic MAC address quarantine works on FortiSwitch? (Choose two.)

Options:

A.

FortiSwitch supports only by VLAN quarantine mode.


B.

FortiGate applies the quarantine-related configuration only on FortiGate.


C.

FortiAnalyzer with a threat detection services license is required.


D.

MAC address quarantine can be enabled through the FortiGate CLI only.


Expert Solution
Questions # 8:

Exhibit.

Question # 8

port24 is the only uplink port connected to the network where access to FortiSwitch management services is possible. However, FortiSwitch is still not accessible on the management interface. Which two actions should you take to fix the issue and access FortiSwitch? (Choose two.)

Options:

A.

You must add port24 native VLAN as an allowed VLAN on internal.


B.

You must add VLAN ID 200 to the allowed VLANS on internal.


C.

You must allow VLAN ID 4094 on port24, if management traffic is tagged.


D.

You should use VLAN ID 4094 as the native VLAN on port24.


Expert Solution
Questions # 9:

Which feature should you enable to reduce the number or unwanted IGMP reports processed by the IGMP querier?

Options:

A.

Enable the IGMP flood setting on the static port for all multicast groups.


B.

Enable the IGMP flood reports setting on the mRouter port.


C.

Enable IGMP snooping proxy.


D.

Enable IGMP flood unknown multicast traffic on the global setting.


Expert Solution
Questions # 10:

Which two statements about managing a FortiSwitch stack on FortiGate are true? (Choose two.)

Options:

A.

A FortiLink interface must be enabled on FortiGate.


B.

The switch controller feature must be enabled on FortiGate.


C.

Only a hardware-based FortiGate can manage a FortiSwitch stack.


D.

FortiSwitch must be operating in standalone mode before authorization.


Expert Solution
Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions