[2022年04月29日] NSE6_FWF-6.4試験練習テスト問題(更新された30問あります) [Q13-Q38]

Share

[2022年04月29日]JPNTest NSE6_FWF-6.4試験練習テスト問題(更新された30問あります)

合格させるFortinet NSE6_FWF-6.4試験情報と無料練習テスト

質問 13
Refer to the exhibits.
Exhibit A

Exhibit B

The exhibits show the diagnose debug log of a station connection taken on the controller CLI.
Which security mode is used by the wireless connection?

  • A. WPA2 Enterprise
  • B. Open, with radius MAC filtering
  • C. WPA2 Personal and radius MAC filtering
  • D. WPA3 Enterprise

正解: A

解説:
Best security option is WPA2-AES.

 

質問 14
As standard best practice, which configuration should be performed before configuring FortiAPs using a FortiGate wireless controller?

  • A. Create a custom AP profile
  • B. Preauthorize APs
  • C. Set the wireless controller country setting
  • D. Create wireless LAN specific policies

正解: A

 

質問 15
Which two roles does FortiPresence analytics assist in generating presence reports? (Choose two.)

  • A. Comparing current data with historical records
  • B. Reporting potential threats by guests on site
  • C. Gathering details about on site visitors
  • D. Predicting the number of guest users visiting on-site

正解: C,D

 

質問 16
Which administrative access method must be enabled on a FortiGate interface to allow APs to connect and function?

  • A. HTTPS
  • B. Security Fabric
  • C. FortiTelemetry
  • D. SSH

正解: B

 

質問 17
Part of the location service registration process is to link FortiAPs in FortiPresence.
Which two management services can configure the discovered AP registration information from the FortiPresence cloud? (Choose two.)

  • A. FortiSwitch
  • B. FortiGate
  • C. FortiAP Cloud
  • D. AP Manager

正解: B,C

解説:
FortiGate, FortiCloud wireless access points (send visitor data in the form of station reports directly to FortiPresence)

 

質問 18
Which two configurations are compatible for Wireless Single Sign-On (WSSO)? (Choose two.)

  • A. A VAP configured to authenticate using a radius server
  • B. A VAP configured for captive portal authentication
  • C. A VAP configured for WPA2 or 3 Enterprise
  • D. A VAP configured to authenticate locally on FortiGate

正解: A,C

解説:
In the SSID choose WPA2-Enterprise authentication.
WSSO is RADIUS-based authentication that passes the user's user group memberships to the FortiGate.

 

質問 19
Which of the following is a requirement to generate analytic reports using on-site FortiPresence deployment?

  • A. SQL services must be running
  • B. Two wireless APs must be sending data
  • C. DTLS encryption on wireless traffic must be turned off
  • D. Wireless network security must be set to open

正解: B

解説:
FortiPresence VM is deployed locally on your site and consists of two virtual machines. All the analytics data collected and computed resides locally on the VMs.

 

質問 20
Which two statements about distributed automatic radio resource provisioning (DARRP) are correct? (Choose two.)

  • A. DARRP measurements can be scheduled to occur at specific times.
  • B. DARRP performs measurements of the number of BSSIDs and their signal strength (RSSI). The controller then uses this information to select the optimum channel for the AP.
  • C. DARRP performs continuous spectrum analysis to detect sources of interference. It uses this information to allow the AP to select the optimum channel.
  • D. DARRP requires that wireless intrusion detection (WIDS) be enabled to detect neighboring devices.

正解: C,D

解説:
DARRP (Distributed Automatic Radio Resource Provisioning) technology ensures the wireless infrastructure is always optimized to deliver maximum performance. Fortinet APs enabled with this advanced feature continuously monitor the RF environment for interference, noise and signals from neighboring APs, enabling the FortiGate WLAN Controller to determine the optimal RF power levels for each AP on the network. When a new AP is provisioned, DARRP also ensures that it chooses the optimal channel, without administrator intervention.

 

質問 21
Refer to the exhibit.

If the signal is set to -68 dB on the FortiPlanner site survey reading, which statement is correct regarding the coverage area?

  • A. Areas with the signal strength equal to -68 dB are zoomed in to provide better visibility
  • B. Areas with the signal strength weaker than -68 dB are cut out of the map
  • C. Areas with the signal strength equal or stronger than -68 dB are highlighted in multicolor
  • D. Areas with the signal strength weaker than -68 dB are highlighted in orange and red to indicate that no signal was propagated by the APs.

正解: C

 

質問 22
As a network administrator, you are responsible for managing an enterprise secure wireless LAN. The controller is based in the United States, and you have been asked to deploy a number of managed APs in a remote office in Germany.
What is the correct way to ensure that the RF channels and transmission power limits are appropriately configured for the remote APs?

  • A. Configure the APs individually by overriding the settings in Managed FortiAPs
  • B. Create a new FortiAP profile and change the county code settings on the profile
  • C. Configure the controller for the correct country code for Germany
  • D. Clone a suitable FortiAP profile and change the county code settings on the profile

正解: D

 

質問 23
Six APs are located in a remotely based branch office and are managed by a centrally hosted FortiGate. Multiple wireless users frequently connect and roam between the APs in the remote office.
The network they connect to, is secured with WPA2-PSK. As currently configured, the WAN connection between the branch office and the centrally hosted FortiGate is unreliable.
Which configuration would enable the most reliable wireless connectivity for the remote clients?

  • A. Configure a tunnel mode wireless network and enable split tunneling to the local network
  • B. Configure a bridge mode wireless network and enable the Local standalone configuration option
  • C. Configure a bridge mode wireless network and enable the Local authentication configuration option
  • D. Install supported FortiAP and configure a bridge mode wireless network

正解: A

 

質問 24
A tunnel mode wireless network is configured on a FortiGate wireless controller.
Which task must be completed before the wireless network can be used?

  • A. The wireless network interface must be assigned a Layer 3 address
  • B. The wireless network to Internet firewall policy must be configured
  • C. Security Fabric and HTTPS must be enabled on the wireless network interface
  • D. The new network must be manually assigned to a FortiAP profile.

正解: B

解説:
A FortiGate unit is an industry leading enterprise firewall. In addition to consolidating all the functions of a network firewall, IPS, anti-malware, VPN, WAN optimization, Web filtering, and application control in a single platform, FortiGate also has an integrated Wi-Fi controller.

 

質問 25
......

あなたを合格させるFortinet試験にはNSE6_FWF-6.4試験問題集:https://www.jpntest.com/shiken/NSE6_FWF-6.4-mondaishu

弊社を連絡する

我々は12時間以内ですべてのお問い合わせを答えます。

オンラインサポート時間:( UTC+9 ) 9:00-24:00
月曜日から土曜日まで

サポート:現在連絡