Pre-Winter Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the Fortinet Fortinet Network Security Expert NSE7_CDS_AR-7.6 Questions and answers with CertsForce

Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
Questions # 1:

What is the main advantage of using SD-WAN Transit Gateway Connect over traditional SD-WAN?

Options:

A.

You can use BGP over IPsec for maximum throughput.


B.

You can combine it with IPsec to achieve higher bandwidth.


C.

It eliminates the use of ECMP.


D.

You can use GRE-based tunnel attachments.


Expert Solution
Questions # 2:

Exhibit.

Question # 2

In which type of FortiCNP insights can an administrator examine the findings triggered by this policy?

Options:

A.

Data


B.

Threat


C.

Risk


D.

User activity


Expert Solution
Questions # 3:

Refer to the exhibit.

Question # 3

An experienced AWS administrator is creating a new virtual public cloud (VPC) flow log with the settings shown in the exhibit.

What is the purpose of this configuration?

Options:

A.

To maximize the number of logs saved


B.

To monitor logs in real time


C.

To retain logs for a long term


D.

To troubleshoot a log flow issue


Expert Solution
Questions # 4:

An administrator is configuring a software-defined network (SDN) connector in FortiWeb to dynamically obtain information about existing objects in an Amazon Elastic Kubernetes Service (EKS) cluster.

Which AWS policy should the administrator attach to a user to achieve this goal?

Options:

A.

AmazonEKSConnectorServiceRolePolicy


B.

AmazonEKSComputePolicy


C.

AmazonEKSServicePolicy


D.

AmazonEKSClusterPolicy


Expert Solution
Questions # 5:

You need a solution to safeguard public cloud-hosted web applications from the OWASP Top 10 vulnerabilities. The solution must support the same region in which your applications reside, with minimum traffic cost.

Which solution meets the requirements?

Options:

A.

Use FortiGate


B.

Use FortiCNP


C.

Use FortiWeb


D.

Use FortiADC


Expert Solution
Questions # 6:

What are two main features in Amazon Web Services (AWS) network access control lists (NACLs)? (Choose two answers)

Options:

A.

NACLs are stateless, and inbound and outbound rules are used for traffic filtering.


B.

NACLs are tied to an instance.


C.

The default NACL is configured to allow all traffic.


D.

You cannot use NACLs and Security Groups at the same time.


Expert Solution
Questions # 7:

Refer to the exhibit.

Question # 7

You are tasked to deploy a FortiGate VM with private and public subnets in Amazon Web Services (AWS). You examined the variables.tf file. Assume that all the other terraform files are in place. What will be the final result after running the terraform init and terraform apply commands? (Choose one answer)

Options:

A.

Terraform will not deploy a FortiGate VM.


B.

Terraform will deploy a FortiGate VM in the eu-West-1a availability zone without any subnets.


C.

Terraform will deploy a FortiGate VM in the eu-West-1 region with private and public subnets.


D.

Terraform will deploy a FortiGate VM in the eu-West-1a availability zone with two subnets and BYOL license.


Expert Solution
Questions # 8:

Your administrator instructed you to deploy an Azure vWAN solution to create a connection between the main company site and branch sites to the other company VNETs. What is the best connection solution available between your company headquarters, branch sites, and the Azure vWAN hub? (Choose one answer)

Options:

A.

An L2TP connection


B.

SSL VPN connections


C.

GRE tunnels


D.

ExpressRoute


Expert Solution
Questions # 9:

Refer to the exhibit.

Question # 9

An administrator is trying to deploy a FortiGate VM in Microsoft Azure using Terraform. However, during the configuration, the Azure client secret is no longer visible in the Azure portal.

How would the administrator obtain the Azure client secret to configure in Terraform?

Options:

A.

Log in to the Azure CLI as a power user to obtain the client secret.


B.

Create a new Azure account and assign it the Administrator role.


C.

Use the Terraform output file values to obtain the client secret.


D.

Create a new client secret and take note of it.


Expert Solution
Questions # 10:

An AWS administrator must ensure that each member of the cloud deployment team has the correct permissions to deploy and manage resources using CloudFormation. The administrator is researching which tasks must be executed with CloudFormation and therefore require CloudFormation permissions.

Which task is run using CloudFormation?

Options:

A.

Deploying a new pod with a service in an Elastic Kubernetes Service (EKS) cluster using the kubectl command


B.

Installing a Helm chart to deploy a FortiWeb ingress controller in an EKS cluster


C.

Creating an EKS cluster with the eksctl create cluster command


D.

Changing the number of nodes in a EKS cluster from AWS CloudShell


Expert Solution
Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions