NSE7_PBC-7.2 Exam Details

  • Exam Code
    :NSE7_PBC-7.2
  • Exam Name
    :Fortinet NSE 7 - Public Cloud Security 7.2
  • Certification
    :Fortinet Certifications
  • Vendor
    :Fortinet
  • Total Questions
    :59 Q&As
  • Last Updated
    :May 25, 2026

Fortinet NSE7_PBC-7.2 Online Questions & Answers

  • Question 41:

    Which statement about Transit Gateway (TGW) in Amazon Web Services (AWS) is true?

    A. TGW can have multiple TGW route tables.
    B. Both the TGW attachment and propagation must be in the same TGW route table
    C. A TGW attachment can be associated with multiple TGW route tables.
    D. The TGW default route table cannot be disabled.

  • Question 42:

    You are using Red Hat Ansible to change the FortiGate VM configuration.

    What is the minimum number of files you must create and which file must you use to configure the target FortiGate IP address?

    A. Create two files and use the .yami file.
    B. Create two files and use the hosts file
    C. Create one file and use the variable file
    D. Create three files and use the .yarai file.

  • Question 43:

    You are asked to find a solution to replace the existing VPC peering topology to have a higher bandwidth connection from Amazon Web Services (AWS) to the on-premises data center Which two solutions will satisfy the requirement? (Choose two.)

    A. Use ECMP and VPN to achieve higher bandwidth.
    B. Use transit VPC to build multiple VPC connections to the on-premises data center
    C. Use a transit VPC with hub and spoke topology to create multiple VPN connections to the on-premises data center.
    D. Use the transit gateway attachment With VPN option to create multiple VPN connections to the on-premises data center

  • Question 44:

    How does Terraform keep track of provisioned resources?

    A. It uses the terraform. tf state file
    B. Terraform does not keep the state of resources created
    C. It uses the terraform. tfvars file.
    D. It uses the database. tf file.

  • Question 45:

    When adding the Amazon Web Services (AWS) account to the FortiCNP, which three mandatory configuration steps must you follow? (Choose three.)

    A. Add AWS accounts through FortiCNP.
    B. Enable cloud protection through AWS Guard Duty and AWS Inspector
    C. Accept FortiCNP to create CloudTrail for the account
    D. Enable cross-reg Ion aggregation
    E. Launch the CloudFormation template.

  • Question 46:

    In an SD-WAN TGW Connect topology, which three initial steps are mandatory when routing traffic from a spoke VPC to a security VPC through a Transit Gateway? (Choose three.)

    A. From the spoke VPC internal routing table, point 0.0.0.0/0 traffic to the TGW
    B. From the security VPC TGW subnet routing table: point 0.0.0.0/0 traffic to theFortiGate internal port
    C. From the security VPC TGW subnet routing table: point 0.0.0.0/0 traffic to the TGW
    D. From the security VPC FortiGate internal subnet routing table, point 0.0.0.0/0 traffic to the TGW
    E. From both spoke VPCs and the security VPC, point 0.0.0.0/0 traffic to the Internet Gateway

  • Question 47:

    An administrator is looking for a solution that can provide insight into users and data stored in major SaaS applications in the multicloud environment.

    Which product should the administrator deploy to have secure access to SaaS applications?

    A. FortiProxy
    B. FortiSandbox
    C. ForliCASB
    D. FortiWeb

  • Question 48:

    Refer to the exhibit.

    You are configuring a second route table on a Transit Gateway to accommodate east-west traffic inspection between two VPCs_ However, you are getting an error during the transit gateway route table association With the Connect attachment.

    Which action Should you take to fulfill your requirement?

    A. Add both Associations and Propagations in the second TGW route table.
    B. Delete the both Connect and Transport attachments from the first TGW route table
    C. Add a static route in the Routes section
    D. In the second route table: create a propagation with the Connect attachment.

  • Question 49:

    Refer to the exhibit.

    What could be the reason that the administrator cannot access the EC2 instance?

    A. You must elevate the permissions to access the EC2 instance
    B. You must run the chmod 400 Staging-key.peracommand before accessing the instance.
    C. There is no . pem key created on in Amazon Web Services (AWS)
    D. The directory location of the . pem file is incorrect.

  • Question 50:

    What kind of underlying mechanism does Transit Gateway Connect use to send traffic from the virtual private cloud (VPC) to the transit gateway?

    A. A BGP attachment
    B. A GRE attachment
    C. A transport attachment
    D. Transit Gateway Connect attachment

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Fortinet exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your NSE7_PBC-7.2 exam preparations and Fortinet certification application, do not hesitate to visit our Vcedump.com to find your solutions here.