Fortinet NSE6_FSW-7.2 Fortinet NSE 6 – FortiSwitch 7.2 Online Training
Fortinet NSE6_FSW-7.2 Online Training
The questions for NSE6_FSW-7.2 were last updated at Nov 19,2024.
- Exam Code: NSE6_FSW-7.2
- Exam Name: Fortinet NSE 6 - FortiSwitch 7.2
- Certification Provider: Fortinet
- Latest update: Nov 19,2024
Refer to the diagnostic output:
Two entries in the exhibit show that the same MAC address has been used in two different VLANs.
Which MAC address is shown in the above output?
- A . It is a MAC address of FortiLink interface on FortiGate.
- B . It is a MAC address of a switch that accepts multiple VLANs.
- C . It is a MAC address of an upstream FortiSwitch.
- D . It is a MAC address of FortiGate in HA configuration.
Refer to the exhibit.
Core-1 and Access-1 are managed and authorized by FortiGate-1. which uses port4 as the FortiLink interface. After FortiGate authorizes and manages Core-2. Port1 status becomes STP discarding.
Why is port1 in the discarding state?
- A . port1 on Core-2 is discarding only management traffic.
- B . Core-1 and Core-2 do not have MCLAG configuration.
- C . Access-1 is the root bridge and can only have one root port.
- D . Core-2 has the lowest bridge priority.
Which two statements about the FortiLink authorization process are true? (Choose two.)
- A . The administrator must manually pre-authorize FortiGate on FortiSwitch by adding the FortiGate serial number.
- B . FortiSwitch requires a reboot to complete the authorization process.
- C . A FortiLink frame is sent by FortiGate to FortiSwitch to complete the authorization.
- D . FortiLink authorization sets the FortiSwitch management mode to FortiLink.
Refer to the exhibits
Traffic arriving on port2 on FortiSwitch is tagged with VLAN ID 10 and destined for PC1 connected on port1. PC1 expects to receive traffic untagged from port1 on FortiSwitch.
Which two configurations can you perform on FortiSwitch to ensure PC1 receives untagged traffic on port1? (Choose two.)
- A . Add the MAC address of PCI as a member of VLAN 10.
- B . Add VLAN ID 10 as a member of the untagged VLANs on port1.
- C . Remove VLAN 10 from the allowed VLANs and add it to untagged VLANs on port1.
- D . Enable Private VLAN on VLAN 10 and add VLAN 20 as an isolated VLAN.
Refer to the exhibits.
Port1 and port2 are the only ports configured with the same native VLAN 10.
What are two reasons that can trigger port1 to shut down? (Choose two.)
- A . port1 was shut down by loop guard protection.
- B . STP triggered a loop and applied loop guard protection on port1.
- C . An endpoint sent a BPDU on port1 that it received from another interface.
- D . Loop guard frame sourced from port 1 was received on port 1.
Refer to the diagnostic output:
What makes the use of the sniffer command on the FortiSwitch CLI unreliable on__port__23?
- A . The types of packets captured is limited.
- B . Just the port egress payloads are printed on CLI.
- C . Only untagged VLAN traffic can be captured.
- D . The switch port might be used as a trunk member
Which interfaces on FortiSwitch send out FortiLink discovery frames by default in order to detect a FortiGate with an enabled FortiLink interface?
- A . All ports have auto-discovery enabled by default.
- B . No ports are enabled by default for auto-discovery. This must be configured under config switch interface.
- C . The ports with auto-discovery enabled by default are dependent upon the FortiSwitch model.
- D . The last four switch ports on FortiSwitch have auto-discovery enabled by default.
Which LLDP-MED Type-Length-Values does FortiSwitch collect from endpoints to track network devices and determine their characteristics?
- A . Network policy
- B . Power management
- C . Location
- D . Inventory management
Refer to the exhibit.
What two conclusions can be made regarding DHCP snooping configuration? (Choose two.)
- A . Maximum value to accept clients DHCP request is configured as per DHCP server range.
- B . FortiSwitch is configured to trust DHCP replies coming on FortiLink interface.
- C . DHCP clients that are trusted by DHCP snooping configured is only one.
- D . Global configuration for DHCP snooping is set to forward DHCP client requests on all ports in the VLAN.
What are two reasons why time synchronization between FortiGate and its managed FortiSwitch is critical in switch management? (Choose two.)
- A . FortiSwitch does not retain its time after a reboot, which gets reset after each reboot.
- B . FortiSwitch will not be able to become an NTP server for downstream devices.
- C . FortiSwitch cannot complete the DTLS handshake used in the CAPWAP tunnel.
- D . FortiSwitch will not allow other FortiSwitch devices in the chain be discovered by FortiGate.