Fortinet NSE 6 - Secure Wireless LAN 6.4 NSE6_FWF-6.4 Exam Questions

Page: 1 / 14
Total 35 questions
Question 1

Which two statements about background rogue scanning are correct? (Choose two.)



Answer : A, C


Question 2

Refer to the exhibits.

Exhibit A

Exhibit B

The exhibits show the diagnose debug log of a station connection taken on the controller CLI.

Which security mode is used by the wireless connection?



Answer : C


Question 3

A tunnel mode wireless network is configured on a FortiGate wireless controller.

Which task must be completed before the wireless network can be used?



Answer : C

A FortiGate unit is an industry leading enterprise firewall. In addition to consolidating all the functions of a network firewall, IPS, anti-malware, VPN, WAN optimization, Web filtering, and application control in a single platform, FortiGate also has an integrated Wi-Fi controller.


Question 4

Refer to the exhibits.

Exhibit A

Exhibit B

Exhibit C

A wireless network has been installed in a small office building and is being used by a business to connect its wireless clients. The network is used for multiple purposes, including corporate access, guest access, and connecting point-of-sale and Io devices.

Users connecting to the guest network located in the reception area are reporting slow performance. The network administrator is reviewing the information shown in the exhibits as part of the ongoing investigation of the problem. They show the profile used for the AP and the controller RF analysis output together with a screenshot of the GUI showing a summary of the AP and its neighboring APs.

To improve performance for the users connecting to the guest network in this area, which configuration change is most likely to improve performance?



Answer : B


Question 5

A tunnel mode SSID is configured on a FortiGate wireless controller.

Which task must be completed before the SSID can be used?



Answer : B

The wireless network interface must be assigned a Layer 3 address because it acts as the gateway for the tunnel mode SSID traffic. The FortiGate wireless controller uses this interface to communicate with the FortiAPs and the wireless clients. Without a valid IP address, the tunnel mode SSID cannot function properly. Reference:Secure Wireless LAN Course Description, page 5; [FortiOS 6.4.0 Handbook - Wireless Controller], page 24.


Question 6

Which two roles does FortiPresence analytics assist in generating presence reports? (Choose two.)



Answer : A, C


FortiPresence analytics is a cloud-based service that provides location analytics and customer engagement tools for wireless networks. FortiPresence analytics assists in generating presence reports by gathering details about on-site visitors, such as their dwell time, frequency, loyalty, and demographics. FortiPresence analytics also assists in comparing current data with historical records, such as trends, patterns, and anomalies. Reference: [FortiPresence Data Sheet], page 1;FortiOS 6.4.0 Handbook - Wireless Controller, page 9.

Question 7

Which statement is correct about security profiles on FortiAP devices?



Answer : D

Security profiles on FortiAP devices can use FortiGate subscription to inspect the traffic, such as antivirus, web filtering, application control, and IPS. This feature is called local bridging and it allows the FortiAP to forward traffic to the FortiGate for security inspection before sending it to the destination network. This reduces the bandwidth consumption and latency of tunnel mode SSIDs. Reference:Secure Wireless LAN Course Description, page 9; [FortiOS 6.4.0 Handbook - Wireless Controller], page 46.


Page:    1 / 14   
Total 35 questions