시험덤프
매달, 우리는 1000명 이상의 사람들이 시험 준비를 잘하고 시험을 잘 통과할 수 있도록 도와줍니다.
  / FCSS_SDW_AR-7.4 덤프  / FCSS_SDW_AR-7.4 문제 연습

Fortinet FCSS_SDW_AR-7.4 시험

FCSS - SD-WAN 7.4 Architect 온라인 연습

최종 업데이트 시간: 2025년06월18일

당신은 온라인 연습 문제를 통해 Fortinet FCSS_SDW_AR-7.4 시험지식에 대해 자신이 어떻게 알고 있는지 파악한 후 시험 참가 신청 여부를 결정할 수 있다.

시험을 100% 합격하고 시험 준비 시간을 35% 절약하기를 바라며 FCSS_SDW_AR-7.4 덤프 (최신 실제 시험 문제)를 사용 선택하여 현재 최신 99개의 시험 문제와 답을 포함하십시오.

 / 3

Question No : 1


Which two statements about SLA targets and SD-WAN rules are true? (Choose two.)

정답:

Question No : 2


Which diagnostic command can you use to show the member utilization statistics measured by performance SLAs for the last 10 minutes?

정답:

Question No : 3


The SD-WAN overlay template helps to prepare SD-WAN deployments. To complete the tasks performed by the SD-WAN overlay template, the administrator must perform some post-run tasks.
What are three mandatory post-run tasks that must be performed? (Choose three.)

정답:

Question No : 4


Refer to the exhibit.



Which statement about the role of the ADVPN device in handling traffic is true?

정답:

Question No : 5


Refer to the exhibit.



An administrator is troubleshooting SD-WAN on FortiGate. A device behind branch1_fgt generates traffic to the 10.0.0.0/8 network. The administrator expects the traffic to match SD-WAN rule ID 1 and be routed over T_INET_0_0. However, the traffic is routed over T_INET_1_0.
Based on the output shown in the exhibit, which two reasons can cause the observed behavior? (Choose two.)

정답:
Explanation:
SD-WAN strategy is Lowest Cost (SLA) as indicated by the "Mode(sla)" flag. Cost SLA uses SLA target, cost, and priority (i.e., interface preference - or order of config unless manually overridden by admin config) as the criteria -- in that order. Both members meet the target, both have 0 cost, and therefore member 3 (T_INET_0) wins the "priority" tiebreaker. So if there is a valid route to the destination through member 3, it will win. The fact that it does not has nothing to do with the configured static route/member priority, which according to SG page 197 "is used as a tiebreaker for ECMP routes when matching implicit SD-WAN rule."

Question No : 6


Two hub-and-spoke groups are connected through a site-to-site IPsec VPN between Hub 1 and Hub 2. The administrator configured ADVPN on both hub-and-spoke groups.



Which two outcomes are expected if a user in Toronto sends traffic to London? (Choose two.)

정답:

Question No : 7


What is the route-tag setting in an SD-WAN rule used for?

정답:
Explanation:
"Configure SD-WAN *rules* to steer traffic to members only if routes have a specific route-tag." Agree with Cyril - although A says the largely same thing as D, route-tag specifically get used by the SD-WAN rule to determine next-hop (i.e., destination). SG p 142 shows "how an administrator can use [route-]tags in SD-WAN rules."

Question No : 8


Refer to the exhibits.
Exhibit A



Exhibit B



Exhibit A shows the source NAT (SNAT) global setting and exhibit B shows the routing table on FortiGate.
Based on the exhibits, which two actions does FortiGate perform on existing sessions established over port2, if the administrator increases the static route priority on port2 to 20? (Choose two.)

정답:

Question No : 9


Exhibit.



The exhibit shows VPN event logs on FortiGate. In the output shown in the exhibit, which statement is true?

정답:

Question No : 10


Refer to the exhibits.
Exhibit A



Exhibit B



Exhibit A shows the configuration for an SD-WAN rule and exhibit B shows the respective rule status, the routing table, and the member status.
The administrator wants to understand the expected behavior for traffic matching the SD-WAN rule. Based on the exhibits, what can the administrator expect for traffic matching the SD-WAN rule?

정답:

Question No : 11


Exhibit.



The exhibit shows the output of the command diagnose sys sdwan health-check status collected on a FortiGate device.
Which two statements are correct about the health check status on this FortiGate device? (Choose two.)

정답:
Explanation:
According to the FortiGate / FortiOS 6.4.2 Administration Guide, the health check status command displays the status of the health check probes for each SD-WAN member interface. The output includes the following information:
state: the current state of the interface, either alive or dead
packet-loss: the percentage of packets lost during the health check
latency: the average round-trip time in milliseconds
jitter: the variation in latency
mos: the mean opinion score, a measure of voice quality
bandwidth: the available bandwidth in kilobits per second for each direction (up, down, bi)
sla map: a bitmap that indicates which SLA criteria are met or failed
Based on the exhibit, the following statements are correct:
The health-check VPN_PING orders the members according to the lowest jitter. This means that the interface with the lowest jitter value is listed first, followed by the next lowest, and so on1. In the exhibit, the order is T_MPLS, T_INET_1, and T_INET_0.
There is no SLA criteria configured for the health-check Level3_DNS. This means that the health check does not use any SLA parameters to determine the state of the interface2. In the exhibit, the sla map value is 0x0 for both port1 and port2, indicating that no SLA criteria are applied.

Question No : 12


Which two statements about the SD-WAN zone configuration are true? (Choose two.)

정답:

Question No : 13


Which statement about SD-WAN zones is true?

정답:
Explanation:
Option A is incorrect because SD-WAN zones can include multiple interface types (e.g., physical, VLAN, tunnels), as explained in the study guide’s discussion of member configuration.
Option B is correct because an SD-WAN zone can logically have zero members (an empty zone) and up to a large number of members, with 512 being a reasonable upper bound supported by Fortinet’s scalability, even if not explicitly stated in the study guide.
Option C is incorrect because the study guide clearly states that SD-WAN zones can be used in static route definitions, enhancing routing flexibility.
Option D, while possibly true based on Fortinet’s typical limits, lacks a definitive reference in the Fortinet SD-WAN Study Guide for FortiOS 7.2 to confirm "32" as the exact number, making it less certain than Option B.
Reference: Fortinet SD-WAN Study Guide for FortiOS 7.2, Section 3: Members, Zones, and Performance SLAs (description of interface types and zones).
Fortinet SD-WAN Study Guide for FortiOS 7.2, Section 4: Routing and Sessions (use of SD-WAN zones in static routes).
Fortinet Documentation: SD-WAN members and zones | FortiGate / FortiOS 7.2.4 (general behavior and flexibility of zones).

Question No : 14


What are two benefits of using the Internet service database (ISDB) in an SD-WAN rule? (Choose two.)

정답:

Question No : 15


Refer to the exhibit.



The exhibit shows the SD-WAN rule status and configuration.
Based on the exhibit, which change in the measured packet loss will make T_INET_1_0 the new preferred member?

정답:

 / 3
Fortinet