Free NSE7_EFW-7.0 Exam Braindumps

Pass your Fortinet NSE 7 - Enterprise Firewall 7.0 exam with these free Questions and Answers

Page 8 of 33
QUESTION 31

View the exhibit, which contains a partial routing table, and then answer the question below.
NSE7_EFW-7.0 dumps exhibit
Assuming all the appropriate firewall policies are configured, which of the following pings will FortiGate
route? (Choose two.)

  1. A. Source IP address 10.1.0.24, Destination IP address 10.72.3.20.
  2. B. Source IP address 10.72.3.27, Destination IP address 10.1.0.52.
  3. C. Source IP address 10.72.3.52, Destination IP address 10.1.0.254.
  4. D. Source IP address 10.73.9.10, Destination IP address 10.72.3.15.

Correct Answer: BC

QUESTION 32

Exhibits:
NSE7_EFW-7.0 dumps exhibit
NSE7_EFW-7.0 dumps exhibit
Refer to the exhibits, which contain the network topology and BGP configuration for a hub.
An administrator is trying to configure ADVPN with a hub-spoke VPN setup using iBGP. All the VPNs are up and connected to the hub. The hub is receiving route information from both spokes over iBGP; however, the spokes are not receiving route information from each other.
What change must the administrator make to the hub BGP configuration so that the routes learned by one spoke are forwarded to the other spokes?

  1. A. Configure an individual neighbor and remove neighbor-range configuration.
  2. B. Configure the hub as a route reflector client.
  3. C. Change the router id to 10.1.0.254.
  4. D. Make the configuration of remote-as different from the configuration of local-as.

Correct Answer: B

QUESTION 33

Four FortiGate devices configured for OSPF connected to the same broadcast domain. The first unit is elected as the designated router The second unit is elected as the backup designated router Under normal operation, how many OSPF full adjacencies are formed to each of the other two units?

  1. A. 1
  2. B. 2
  3. C. 3
  4. D. 4

Correct Answer: B

QUESTION 34

View the exhibit, which contains a partial web filter profile configuration, and then answer the question below.
NSE7_EFW-7.0 dumps exhibit
Which action will FortiGate take if a user attempts to access www.dropbox.com, which is categorized as File Sharing and Storage?

  1. A. FortiGate will exempt the connection based on the Web Content Filter configuration.
  2. B. FortiGate will block the connection based on the URL Filter configuration.
  3. C. FortiGate will allow the connection based on the FortiGuard category based filter configuration.
  4. D. FortiGate will block the connection as an invalid URL.

Correct Answer: B
fortigate does it in order Static URL -> FortiGuard – > Content -> Advanced (java, cookie removal..)so block it in first step

Page 8 of 33

Post your Comments and Discuss Fortinet NSE7_EFW-7.0 exam with other Community members: