Official Bank 0/91

Fortinet NSE 7 – Enterprise Firewall 6.0 Exam (NSE7_EFW-6.0) - Fortinet Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
91 Total Questions
1
Question
View the exhibit, which contains the output of a BGP debug command, and then answer the question below.

Exhibit

Which of the following statements about the exhibit are true? (Choose two.)
Select 2
Options
A Since the counters were last reset; the 10.200.3.1 peer has never been down.
B The local router has received a total of three BGP prefixes from all peers.
C The local router's BGP state is Established with the 10.125.0.60 peer.
D The local router has not established a TCP session with 100.64.3.1.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
View the exhibit, which contains the output of a debug command, and then answer the question below.

Exhibit

Which of the following statements about the exhibit are true? (Choose two.)
Select 2
Options
A The local FortiGate’s OSPF router ID is 0.0.0.4
B Port4 is connected to the OSPF backbone area.
C In the network on port4, two OSPF routers are down.
D The local FortiGate has been elected as the OSPF backup designated router.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
View the exhibit, which contains the output of a web diagnose command, and then answer the question below.

Exhibit

Which one of the following statements explains why the cache statistics are all zeros?
Options
A The FortiGuard web filter cache is disabled in the FortiGate’s configuration.
B There are no users making web requests.
C The administrator has reallocated the cache memory to a separate process.
D FortiGate is using a flow-based web filter and the cache applies only to proxy-based inspection.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
Which statements about bulk configuration changes using FortiManager CLI scripts are correct? (Choose two.)
Select 2
Options
A When executed on the Device Database, you must use the installation wizard to apply the changes to the managed FortiGate.
B When executed on the Policy Package, ADOM database, changes are applied directly to the managed FortiGate.
C When executed on the All FortiGate in ADOM, changes are automatically installed without creating a new revision history.
D When executed on the Remote FortiGate directly, administrators do not have the option to review the changes prior to installation.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
An administrator cannot connect to the GIU of a FortiGate unit with the IP address 10.0.1.254. The administrator runs the debug flow while attempting the connection using HTTP. The output of the

Exhibit

Based on the error displayed by the debug flow, which are valid reasons for this problem? (Choose debug flow is shown in the exhibit: two.) A.
Options
A C.
B HTTP administrative access is disabled in the FortiGate interface with the IP address 10.0.1.254.
Redirection of HTTP to HTTPS administrative access is disabled.
HTTP administrative access is configured with a port number different than 80.
The packet is denied because of reverse path forwarding check.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.