Exam Details

  • Exam Code
    :NSE7_SDW-6.4
  • Exam Name
    :Fortinet NSE 7 - SD-WAN 6.4
  • Certification
    :Fortinet Certifications
  • Vendor
    :Fortinet
  • Total Questions
    :80 Q&As
  • Last Updated
    :Aug 22, 2023

Fortinet Fortinet Certifications NSE7_SDW-6.4 Questions & Answers

  • Question 31:

    Which two reasons make forward error correction (FEC) ideal to enable in a phase one VPN interface? (Choose two )

    A. FEC transmits the original payload in full to recover the error in transmission.

    B. FEC improves reliability which overcomes adverse WAN conditions such as noisy links.

    C. FEC is useful to increase speed at which traffic is routed through IPsec tunnels.

    D. FEC transmits additional packets as redundant data to the remote device.

    E. FEC reduces the stress on the remote device jitter buffer to reconstruct packet loss

  • Question 32:

    Which action FortiGate performs on traffic that is subject to a per-IP traffic shaper of 10 Mbps?

    A. FortiGate shares 10 Mbps of bandwidth equally among all source IP addresses.

    B. FortiGate applies traffic shaping to the original traffic direction only.

    C. FortiGate limits each source IP address to a maximum bandwidth of 10 Mbps.

    D. FortiGate guarantees a minimum of 10 Mbps of bandwidth to each source IP address.

  • Question 33:

    Refer to the exhibit.

    Based on the output, which two conclusions are true? (Choose two.)

    A. The all_rules rule represents the implicit SD-WAN rule.

    B. There is more than one SD-WAN rule configured.

    C. Entry 1 (id=1) is a regular policy route.

    D. The SD-WAN rules takes precedence over regular policy routes.

  • Question 34:

    Which two configuration tasks are required to use SD-WAN? (Choose two.)

    A. Add one or more members to an SD-WAN zone.

    B. Configure at least one firewall policy for SD-WAN traffic.

    C. Specify the outgoing interface routing cost.

    D. Specify the incoming interfaces in SD-WAN rules.

  • Question 35:

    Which CLI command do you use to perform real-time troubleshooting for ADVPN negotiation?

    A. diagnose sys virtual-wan-link service

    B. get router info routing-table

    C. diagnose debug application ike

    D. get ipsec tunnel list

  • Question 36:

    Which two interfaces are considered overlay links? (Choose two.)

    A. IPsec

    B. Physical

    C. LAG

    D. GRE

  • Question 37:

    An administrator is troubleshooting VoIP quality issues that occur when calling external phone numbers The SD-WAN interface on the edge FortiGate is configured with the default settings, and is using two upstream links One link has random jitter and latency issues and is based on a wireless connection

    Which two actions must the administrator apply simultaneously on the edge FortiGate to improve VoIP quality using SD_WAN rules?

    A. Select the corresponding SD-WAN balancing strategy in the SD-WAN rule.

    B. Choose the suitable interface based on the interface cost and weight.

    C. Use the performance SLA targets to detect latency and jitter instantly.

    D. Place the troublesome link at the top of the interface preference list.

    E. Configure an SD-WAN rule to load balance all traffic without VoIP.

  • Question 38:

    Which statement about using BGP routes in SD-WAN is true?

    A. Adding static routes must be enabled on all ADVPN interfaces.

    B. VPN topologies must be form using only BGP dynamic routing with SD-WAN

    C. Learned routes can be used as dynamic destinations in SD-WAN rules

    D. Dynamic routing protocols can be used only with non-encrypted traffic

  • Question 39:

    What are two reasons why it is effective to implement the internet service database (ISDB) in an SD-WAN rule? (Choose two )

    A. The ISDB is dynamically updated and reduces administrative overhead.

    B. The ISDB applies rules to traffic from specific sources, based on application type.

    C. The ISDB requires application control to maintain signatures and perform load-balancing.

    D. The ISDB contains the IP addresses and port ranges of well-known destinations.

  • Question 40:

    Which two tasks about using central VPN management are true? (Choose two.)

    A. You can configure full mesh, star, and dial-up VPN topologies.

    B. FortiManager installs VPN settings on both managed and external gateways.

    C. You configure VPN communities to define common IPsec settings shared by all VPN gateways.

    D. You must enable VPN zones for SD-WAN deployments.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Fortinet exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your NSE7_SDW-6.4 exam preparations and Fortinet certification application, do not hesitate to visit our Vcedump.com to find your solutions here.