Fortinet
NSE6_FWF-6.4
Q1:
How are wireless clients assigned to a dynamic VLAN configured for hash mode?
○
A
Using the current number of wireless clients connected to the SSID and the number of IPs available in the least busy VLAN○
B
Using the current number of wireless clients connected to the SSID and the number of clients allocated to each of the VLANs○
C
Using the current number of wireless clients connected to the SSID and the number of VLANs available in the pool○
D
Using the current number of wireless clients connected to the SSID and the group the FortiAP is a member of
Fortinet
NSE6_FWF-6.4
Q2:
Which statement is correct about security profiles on FortiAP devices?
○
A
Security profiles on FortiAP devices can use FortiGate subscription to inspect the traffic○
B
Only bridge mode SSIDs can apply the security profiles○
C
Disable DTLS on FortiAP○
D
FortiGate performs inspection the wireless traffic
Fortinet
NSE6_FWF-6.4
Q3:
When deploying a wireless network that is authenticated using EAP PEAP, which two configurations are required? (Choose two.)
☐
A
An X.509 certificate to authenticate the client☐
B
An X.509 to authenticate the authentication server☐
C
A WPA2 or WPA3 personal wireless network☐
D
A WPA2 or WPA3 Enterprise wireless network
Fortinet
NSE6_FWF-6.4
Q4:
What is the first discovery method used by FortiAP to locate the FortiGate wireless controller in the default configuration?
○
A
DHCP○
B
Static○
C
Broadcast○
D
Multicast
Fortinet
NSE6_FWF-6.4
Q5:
A tunnel mode wireless network is configured on a FortiGate wireless controller.
Which task must be completed before the wireless network can be used?
○
A
The wireless network interface must be assigned a Layer 3 address○
B
Security Fabric and HTTPS must be enabled on the wireless network interface○
C
The wireless network to Internet firewall policy must be configured○
D
The new network must be manually assigned to a FortiAP profile.