New Year Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70special

Fortinet NSE6_FWF-6.4 Fortinet NSE 6 - Secure Wireless LAN 6.4 Exam Practice Test

Fortinet NSE 6 - Secure Wireless LAN 6.4 Questions and Answers

Testing Engine

  • Product Type: Testing Engine
$37.5  $124.99

PDF Study Guide

  • Product Type: PDF Study Guide
$33  $109.99
Question 1

Which two statements about distributed automatic radio resource provisioning (DARRP) are correct? (Choose two.)

Options:

A.

DARRP performs continuous spectrum analysis to detect sources of interference. It uses this information to allow the AP to select the optimum channel.

B.

DARRP performs measurements of the number of BSSIDs and their signal strength (RSSI). The controller then uses this information to select the optimum channel for the AP.

C.

DARRP measurements can be scheduled to occur at specific times.

D.

DARRP requires that wireless intrusion detection (WIDS) be enabled to detect neighboring devices.

Question 2

Refer to the exhibit.

What does the asterisk (*) symbol beside the channel mean?

Options:

A.

Indicates channels that can be used only when Radio Resource Provisioning is enabled

B.

Indicates channels that cannot be used because of regulatory channel restrictions

C.

Indicates channels that will be scanned by the Wireless Intrusion Detection System (WIDS)

D.

Indicates channels that are subject to dynamic frequency selection (DFS) regulations

Question 3

How are wireless clients assigned to a dynamic VLAN configured for hash mode?

Options:

A.

Using the current number of wireless clients connected to the SSID and the number of IPs available in the least busy VLAN

B.

Using the current number of wireless clients connected to the SSID and the number of clients allocated to each of the VLANs

C.

Using the current number of wireless clients connected to the SSID and the number of VLANs available in the pool

D.

Using the current number of wireless clients connected to the SSID and the group the FortiAP is a member of

Question 4

Six APs are located in a remotely based branch office and are managed by a centrally hosted FortiGate. Multiple wireless users frequently connect and roam between the APs in the remote office.

The network they connect to, is secured with WPA2-PSK. As currently configured, the WAN connection between the branch office and the centrally hosted FortiGate is unreliable.

Which configuration would enable the most reliable wireless connectivity for the remote clients?

Options:

A.

Configure a tunnel mode wireless network and enable split tunneling to the local network

B.

Configure a bridge mode wireless network and enable the Local standalone configuration option

C.

Configure a bridge mode wireless network and enable the Local authentication configuration option

D.

Install supported FortiAP and configure a bridge mode wireless network

Question 5

Which factor is the best indicator of wireless client connection quality?

Options:

A.

Downstream link rate, the connection rate for the AP to the client

B.

The receive signal strength (RSS) of the client at the AP

C.

Upstream link rate, the connection rate for the client to the AP

D.

The channel utilization of the channel the client is using

Question 6

Which two configurations are compatible for Wireless Single Sign-On (WSSO)? (Choose two.)

Options:

A.

A VAP configured for captive portal authentication

B.

A VAP configured for WPA2 or 3 Enterprise

C.

A VAP configured to authenticate locally on FortiGate

D.

A VAP configured to authenticate using a radius server

Question 7

What type of design model does FortiPlanner use in wireless design project?

Options:

A.

Architectural model

B.

Predictive model

C.

Analytical model

D.

Integration model

Question 8

Which statement is correct about security profiles on FortiAP devices?

Options:

A.

Security profiles can only be applied to unencrypted wireless traffic.

B.

Security profiles can only be applied via firewall policies on the FortiGate.

C.

Security profiles are only supported on Bridge-mode SSIDs.

D.

Security profiles on FortiAP devices can use FortiGate subscription to inspect the traffic.

Question 9

Which statement describes FortiPresence location map functionality?

Options:

A.

Provides real-time insight into user movements

B.

Provides real-time insight into user online activity

C.

Provides real-time insight into user purchase activity

D.

Provides real-time insight into user usage stats