Weekend Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: netbudy65

NSE7_NST-7.2 Fortinet NSE 7 - Network Security 7.2 Support Engineer Questions and Answers

Questions 4

Refer to the exhibits.

NSE7_NST-7.2 Question 4

An administrator is attempting to advertise the network configured on port3. However, FGT-A is not receiving the prefix.

Which two actions can the administrator take to fix this problem'' (Choose two.)

Options:

A.

Restart BGP using a soft reset, which forces both peers to exchange their complete BGP routing tables.

B.

Manually add the BGP route on FGT-A.

C.

Modify the prefix using the network command from 172.16.0.0/16 to 172.16.54.0724.

D.

Use the set network-import-check disable command.

Buy Now
Questions 5

Refer to the exhibit, which shows the output of a BGP debug command.

NSE7_NST-7.2 Question 5

Which statement explains why the state of the 10.200.3.1 peer is Connect?

Options:

A.

The local router initiated the BGP session to 10.200.3.1 but did not receive a response.

B.

The local router is receiving BGP keepalives from the remote peer, but the local peer has not received the OpenConf inn yet.

C.

The router 10.200.3.1 has authentication configured for BGP and the local router does not.

D.

The local router has a different AS number than the remote peer.

Buy Now
Questions 6

Refer to the exhibit. whichcontains the output of diagnose vpn tunnellist.

NSE7_NST-7.2 Question 6

Which command will capture ESP traffic for the VPN named DialUp_0?

Options:

A.

diagnose sniffer packet any ‘host10.0.10.10’

B.

diagnose sniffer packet any ‘ip proto 50’

C.

diagnose sniffer packet any ‘esp and host 10*200.3.2’

D.

diagnose sniffer packet any ‘port 4500’

Buy Now
Questions 7

Refer to the exhibit, which shows two entries that were generated in the FSSO collector agent logs.

NSE7_NST-7.2 Question 7

What three conclusions can you draw from these log entries? (Choose three.)

Options:

A.

Remote registry is not running on the workstation.

B.

The FortiGate firmware version is not compatible with that of the collector agent

C.

DNS resolution is unable to resolve the workstation name.

D.

The user's status shows as "not verified" in the collector agent

E.

A firewall is blocking traffic to port 139 and 445.

Buy Now
Questions 8

Which three conditions are required for two FortiGate devices to form an OSPF adjacency? (Choose three.)

Options:

A.

OSPF link costs match.

B.

OSPF interface priority settings are unique

C.

OSPF interface network types match

D.

Authentication settings match.

E.

OSPF router IDs are unique.

Buy Now
Questions 9

Refer to the exhibit, which shows the output of diagnose syssessionstat. Which statement about the output shown in the exhibit is correct?

Options:

A.

AII the sessions in the session table are TCP sessions.

B.

162 sessions have been deleted because of memory page exhaustion.

C.

There are 166 TCP sessions waiting to complete the three-way handshake.

D.

There are two sessions that have not been removed in case of any out-of-order packets that arrive.

Buy Now
Questions 10

NSE7_NST-7.2 Question 10

Refer to the exhibit, which shows the modified output of the routing kernel.

Which statement is true?

Options:

A.

The BGP route to 10.0.4.0/24 is not in the forwarding information base.

B.

The default static route through port2 is in the forwarding information base.

C.

The default static route through 10.200.1.254 is not in the forwarding information base.

D.

The egress interface associated with static route 8.8.8.8/32 is administratively up.

Buy Now
Questions 11

Refer to the exhibit, which shows a session table entry.

NSE7_NST-7.2 Question 11

Which statement about FortiGate behavior relating to this session is true?

Options:

A.

FortiGate forwarded this session without any inspection.

B.

FortiGate is performing a security profile inspection using the CPU.

C.

FortiGate redirected the client to the captive portal to authenticate, so that a correct policy match could be made.

D.

FortiGate applied only IPS inspection to this session.

Buy Now
Questions 12

Refer to the exhibit, which shows the omitted output of a real-time OSPF debug

NSE7_NST-7.2 Question 12

Which statement is false?

Options:

A.

A password has been configured on the local OSPF router but is not shown in the output

B.

The Hello packet is being sent from an OSPF router with ID 0.0.0.112.

C.

The two FortiGate devices attempting adjacency are in area 0.0.0.0.

D.

One FortiGate device is configured to require authentication, while the other is not

Buy Now
Exam Code: NSE7_NST-7.2
Exam Name: Fortinet NSE 7 - Network Security 7.2 Support Engineer
Last Update: Oct 15, 2025
Questions: 40

PDF + Testing Engine

$134.99

Testing Engine

$99.99

PDF (Q&A)

$84.99