Pass the Fortinet NSE 6 Network Security Specialist NSE6_FSW-7.2 Questions and answers with CertsForce

Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions
Questions # 11:

Which statement about the IGMP snooping querier when enabled on a VLAN is true?

Options:

A.

Active multicast receiver entries are aging on each IGMP query sent on the VLAN


B.

IGMP reports on the VLAN are forwarded to all switch ports.


C.

The setting can only be enabled using the FortiSwitch CLI.


D.

All other indirectly connected switches will be unable to get IGMP multicast traffic.


Expert Solution
Questions # 12:

Refer to the exhibits

Question # 12

Question # 12

Traffic arriving on port2 on FortiSwitch is tagged with VLAN ID 10 and destined for PC1 connected on port1. PC1 expects to receive traffic untagged from port1 on FortiSwitch.

Which two configurations can you perform on FortiSwitch to ensure PC1 receives untagged traffic on port1? (Choose two.)

Options:

A.

Add the MAC address of PCI as a member of VLAN 10.


B.

Add VLAN ID 10 as a member of the untagged VLANs on port1.


C.

Remove VLAN 10 from the allowed VLANs and add it to untagged VLANs on port1.


D.

Enable Private VLAN on VLAN 10 and add VLAN 20 as an isolated VLAN.


Expert Solution
Questions # 13:

Which is a requirement to enable SNMP v2c on a managed FortiSwitch?

Options:

A.

Create an SNMP user to use for authentication and encryption.


B.

Specify an SNMP host to send traps to.


C.

Enable an SNMP v3 to handle traps messages with SNMP hosts.


D.

Configure SNMP agent and communities.


Expert Solution
Questions # 14:

Which statement about using MAC, IP, and protocol-based VLANs on FortiSwitch is true?

Options:

A.

lt is a scalable and secure solution in comparison to other Layer 2 security measures.


B.

FortiSwitch uses only the Ethernet type to assign traffic to VLANs.


C.

It provides benefits that can be obtained when using 802.1X authentication.


D.

Endpoints are required to use the same FortiSwitch port to remain members of the VLAN.


Expert Solution
Questions # 15:

An administrator needs to deploy managed FortiSwitch devices in a remote location where multiple VLANs must be utilized to segment devices. No Layer 3 switch or router is present. The the only WAN connectivity is the router provided by the ISP connected to the public internet.

Which two items will the administrator need to use? (Choose two.)

Options:

A.

A FortiSwitch interface connected to the ISP router configured with fortilink-13-mode enabled.


B.

FortiSwitch and FortiGate devices configured with VXLAN interfaces.


C.

FortiSwitch devices configured with NAT disabled.


D.

FortiSwitch devices that have the required internal hardware for this configuration.


E.

FortiSwitch and FortiGate devices configured with IPsec interfaces.


Expert Solution
Questions # 16:

Which statement about the configuration of VLANs on a managed FortiSwitch port is true?

Options:

A.

Untagged VLANs must be part of the allowed VLANs: ingress and egress.


B.

FortiSwitch VLAN interfaces are created only when FortiSwitch is managed by Forti-Gate.


C.

The native VLAN is implicitly part of the allowed VLAN on the port.


D.

Allowed VLANS expand the collision domain to the port.


Expert Solution
Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions