Official Bank 0/97

Fortinet NSE 7 – SD-WAN 7.2 (NSE7_SD-WAN-7.2) - Fortinet Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
97 Total Questions
1
Question
Exhibit

Exhibit B –

Exhibit

Exhibit A shows the system interface with the static routes and exhibit B shows the firewall policies on the managed FortiGate. Based on the FortiGate configuration shown in the exhibits, what issue might you encounter when creating an SD-WAN zone for port1 and port2?
Options
A port1 is referenced in a firewall policy.
B port1 is assigned a manual IP address.
C port1 and port2 are not administratively down.
D port2 is referenced in a static route.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
Which two statements about the SD-WAN zone configuration are true? (Choose two.)
Select 2
Options
A You can delete the default zones.
B The service-sla-tie-break setting enables you to configure preferred member selection based on the best route to the destination.
C The default zones are virtual-wan-link and SASE.
D An SD-WAN member can belong to two or more zones.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
Exhibit

2. Refer to the exhibit.
Two hub-and-spoke groups are connected through a site-to-site IPsec VPN between Hub 1 and Hub Which two configuration settings are required for Toronto and London spokes to establish an ADVPN shortcut? (Choose two.)
Select 2
Options
A On the spokes, auto-discovery-receiver must be enabled on the IPsec VPN to the hub.
B On the hubs, auto-discovery-sender must be enabled on the IPsec VPNs to spokes.
C auto-discovery-forwarder must be enabled on all IPsec VPNs.
D On the hubs, net-device must be enabled on all IPsec VPNs.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
Exhibit

Based on the exhibit, which statement about FortiGate re-evaluating traffic is true? Refer to the exhibit.
Options
A FortiGate has terminated the session after a change on policy ID 1.
B The type of traffic defined and allowed on firewall policy ID 1 is UDP.
C Firewall policy ID 1 has source NAT disabled.
D Changes have been made on firewall policy ID 1 on FortiGate.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
What is the route-tag setting in an SD-WAN rule used for?
Options
A To indicate the destination of a rule based on learned BGP prefixes.
B To indicate the routes for health check probes.
C To indicate the routes that can be used for routing SD-WAN traffic.
D To indicate the members that can be used to route SD-WAN traffic.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.