Official Bank 0/88

NSE7 Enterprise Firewall – FortiOS 5.4 (NSE7_EFW) - Fortinet Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
88 Total Questions
1
Question
Examine the following partial output from a sniffer command; then answer the question below.

Exhibit

What is the meaning of the packets dropped counter at the end of the sniffer?
Options
A Number of packets that didn’t match the sniffer filter.
B Number of packets that matched the sniffer filter but could not be captured by the sniffer.
C Number of total packets dropped by the FortiGate.
D Number of packets that matched the sniffer filter and were dropped by the FortiGate.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
View the exhibit, which contains the output of a debug command, and then answer the question below.

Exhibit

What statement is correct about this FortiGate?
Options
A It is currently in FD conserve mode.
B It is currently in system conserve mode because of high memory usage.
C It is currently in kernel conserve mode because of high memory usage.
D It is currently in system conserve mode because of high CPU usage.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
Which of the following statements is true regarding a FortiGate configured as an explicit web proxy?
Options
A FortiGate limits the number of simultaneous sessions per explicit web proxy user. This limit CANNOT be modified by the administrator.
B FortiGate limits the number of workstations that authenticate using the same web proxy user credentials. This limit CANNOT be modified by the administrator.
C FortiGate limits the total number of simultaneous explicit web proxy users.
D FortiGate limits the number of simultaneous sessions per explicit web proxy user. The limit CAN be modified by the administrator.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
View the following FortiGate configuration.

Exhibit

All traffic to the Internet currently egresses from port1. The exhibit shows partial session information
for Internet traffic from a user on the internal network:

Exhibit

If the priority on route ID 1 were changed from 5 to 20, what would happen to traffic matching that
user’s session?
Options
A The session would remain in the session table, and its traffic would start to egress from port2.
B The session would be deleted, so the client would need to start a new session.
C The session would remain in the session table, but its traffic would now egress from both port1 and port2.
D The session would remain in the session table, and its traffic would still egress from port1.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
Which statements about bulk configuration changes using FortiManager CLI scripts are correct? (Choose two.)
Select 2
Options
A When executed on the Remote FortiGate directly, administrators do not have the option to review the changes prior to installation.
B When executed on the Device Database, you must use the installation wizard to apply the changes to the managed FortiGate.
C When executed on the All FortiGate in ADOM, changes are automatically installed without creating a new revision history.
D When executed on the Policy Package, ADOM database, changes are applied directly to the managed FortiGate.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.