Summer Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

Pass the Fortinet NSE 6 Network Security Specialist NSE6_FSW-7.2 Questions and answers with ValidTests

Exam NSE6_FSW-7.2 All Questions
Exam NSE6_FSW-7.2 Premium Access

View all detail and faqs for the NSE6_FSW-7.2 exam

Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
Questions # 1:

Refer to the diagnostic output:

Question # 1

Two entries in the exhibit show that the same MAC address has been used in two different VLANs. Which MAC address is shown in the above output?

Options:

A.

It is a MAC address of FortiLink interface on FortiGate.

B.

It is a MAC address of a switch that accepts multiple VLANs.

C.

It is a MAC address of an upstream FortiSwitch.

D.

It is a MAC address of FortiGate in HA configuration.

Expert Solution
Questions # 2:

Which is a requirement to enable SNMP v2c on a managed FortiSwitch?

Options:

A.

Create an SNMP user to use for authentication and encryption.

B.

Specify an SNMP host to send traps to.

C.

Enable an SNMP v3 to handle traps messages with SNMP hosts.

D.

Configure SNMP agent and communities.

Expert Solution
Questions # 3:

Exhibit.

Question # 3

port24 is the only uplink port connected to the network where access to FortiSwitch management services is possible. However, FortiSwitch is still not accessible on the management interface. Which two actions should you take to fix the issue and access FortiSwitch? (Choose two.)

Options:

A.

You must add port24 native VLAN as an allowed VLAN on internal.

B.

You must add VLAN ID 200 to the allowed VLANS on internal.

C.

You must allow VLAN ID 4094 on port24, if management traffic is tagged.

D.

You should use VLAN ID 4094 as the native VLAN on port24.

Expert Solution
Questions # 4:

Exhibit.

Question # 4

Which configuration change will allow the managed FortiSwitch to accept SNMP requests from any source?

Options:

A.

Create a new local access profile for SNMP only.

B.

Enable SNMP on the internal interface of the switch.

C.

Configure an SNMP host to send SNMP traps.

D.

Add SNMP service on the management interface of the switch.

Expert Solution
Questions # 5:

Which two rules used by MSTP are similar to rules used by other STP methods? (Choose two.)

Options:

A.

MSTP uses port role election, similar to rapid STP on the instances.

B.

MSTP uses alternate path and primary path, similar to regular STP.

C.

MSTP uses root bridge selection, similar to rapid STP

D.

MSTP uses timers for transitioning the ports, similar to regular STP.

Expert Solution
Questions # 6:

Refer to the exhibit.

Question # 6

Core-1 and Access-1 are managed and authorized by FortiGate-1. which uses port4 as the FortiLink interface. After FortiGate authorizes and manages Core-2. Port1 status becomes STP discarding.

Why is port1 in the discarding state?

Options:

A.

port1 on Core-2 is discarding only management traffic.

B.

Core-1 and Core-2 do not have MCLAG configuration.

C.

Access-1 is the root bridge and can only have one root port.

D.

Core-2 has the lowest bridge priority.

Expert Solution
Questions # 7:

Which two statements about 802.1X authentication on FortiSwitch ports are true? (Choose two.)

Options:

A.

All hosts behind an authenticated port are allowed access after a successful authentica-tion.

B.

A security policy is used to apply 802.1 authentication on a port.

C.

A local user database must be used to authenticate devices using the 802.1X authentica-tion protocol.

D.

All devices connecting to FortiSwitch must support 802.1X authentication.

Expert Solution
Questions # 8:

What feature can network administrators use to segment network operations and the administration of managed FortiSwitch devices on FortiGate?

Options:

A.

FortiGate multi-tenancy

B.

Multi-chassis link aggregation trunk

C.

FortiGate clustering protocol

D.

FortiLink split interface

Expert Solution
Questions # 9:

Refer to the diagnostic output:

Question # 9

What makes the use of the sniffer command on the FortiSwitch CLI unreliable on__port__23?

Options:

A.

The types of packets captured is limited.

B.

Just the port egress payloads are printed on CLI.

C.

Only untagged VLAN traffic can be captured.

D.

The switch port might be used as a trunk member

Expert Solution
Questions # 10:

Which packet capture method allows FortiSwitch to capture traffic on trunks and management interfaces?

Options:

A.

SPAN

B.

Sniffer profile

C.

sFlow

D.

TCP dump

Expert Solution
Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions