NSE7_SDW-7.2 Dumps

NSE7_SDW-7.2 Free Practice Test

Fortinet NSE7_SDW-7.2: Fortinet NSE 7 - SD-WAN 7.2

QUESTION 11

Refer to the exhibits. Exhibit A -
NSE7_SDW-7.2 dumps exhibit
Exhibit B -
NSE7_SDW-7.2 dumps exhibit
Exhibit A shows the SD-WAN performance SLA and exhibit B shows the SD-WAN member status, the routing table, and the performance SLA status.
If port2 is detected dead by FortiGate, what is the expected behavior?

Correct Answer: B
This is due to Update static route is enable which removes the static route entry referencing the interface if the interface is dead

QUESTION 12

Two hub-and-spoke groups are connected through a site-to-site IPsec VPN between Hub 1 and Hub 2. The administrator configured ADVPN on both hub-and-spoke groups.
NSE7_SDW-7.2 dumps exhibit
Which two outcomes are expected if a user in Toronto sends traffic to London? (Choose two.)

Correct Answer: BD

QUESTION 13

Refer to the exhibit.
NSE7_SDW-7.2 dumps exhibit
FortiGate has multiple dial-up VPN interfaces incoming on port1 that match only FIRST_VPN.
Which two configuration changes must be made to both IPsec VPN interfaces to allow incoming connections to match all possible IPsec dial-up interfaces? (Choose two.)

Correct Answer: AC

QUESTION 14

Refer to the exhibit.
NSE7_SDW-7.2 dumps exhibit
In a dual-hub hub-and-spoke SD-WAN deployment, which is a benefit of disabling the anti- replay setting on the hubs?

Correct Answer: B

QUESTION 15

Which two statements describe how IPsec phase 1 main mode is different from aggressive mode when performing IKE negotiation? (Choose two )

Correct Answer: BC