[Q10-Q29] Real Fortinet NSE6_FWF-6.4 Exam Questions [Updated 2021]

Share

Real Fortinet NSE6_FWF-6.4 Exam Questions [Updated 2021]

NSE6_FWF-6.4 Exam Dumps Pass with Updated 2021 Fortinet NSE 6 - Secure Wireless LAN 6.4

NEW QUESTION 10
Refer to the exhibits.
Exhibit A

Exhibit B

The exhibits show the diagnose debug log of a station connection taken on the controller CLI.
Which security mode is used by the wireless connection?

  • A. WPA3 Enterprise
  • B. WPA2 Personal and radius MAC filtering
  • C. Open, with radius MAC filtering
  • D. WPA2 Enterprise

Answer: D

Explanation:
Best security option is WPA2-AES.

 

NEW QUESTION 11
When using FortiPresence as a captive portal, which two types of public authentication services can be used to access guest Wi-Fi? (Choose two.)

  • A. Hardware security token authentication
  • B. Social networks authentication
  • C. Short message service authentication
  • D. Software security token authentication

Answer: A,B

Explanation:
This information along with the social network authentication logins with Facebook, Google, Instagram, LinkedIn, or FortiPresence using your WiFi.
Captive Portal configurations for social media logins and internet access. You can add and manage sites using the integrated Google maps and manoeuvre your hardware infrastructure easily.

 

NEW QUESTION 12
Which administrative access method must be enabled on a FortiGate interface to allow APs to connect and function?

  • A. HTTPS
  • B. SSH
  • C. FortiTelemetry
  • D. Security Fabric

Answer: D

 

NEW QUESTION 13
Which two configurations are compatible for Wireless Single Sign-On (WSSO)? (Choose two.)

  • A. A VAP configured for WPA2 or 3 Enterprise
  • B. A VAP configured for captive portal authentication
  • C. A VAP configured to authenticate locally on FortiGate
  • D. A VAP configured to authenticate using a radius server

Answer: A,D

Explanation:
In the SSID choose WPA2-Enterprise authentication.
WSSO is RADIUS-based authentication that passes the user's user group memberships to the FortiGate.

 

NEW QUESTION 14
As standard best practice, which configuration should be performed before configuring FortiAPs using a FortiGate wireless controller?

  • A. Set the wireless controller country setting
  • B. Create a custom AP profile
  • C. Preauthorize APs
  • D. Create wireless LAN specific policies

Answer: B

 

NEW QUESTION 15
Refer to the exhibits.
Exhibit A

Exhibit B

A wireless network has been created to support a group of users in a specific area of a building. The wireless network is configured but users are unable to connect to it. The exhibits show the relevant controller configuration for the APs and the wireless network.
Which two configuration changes will resolve the issue? (Choose two.)

  • A. For both interfaces in the wtp-profile, configure set vaps to be "Authors"
  • B. For both interfaces in the wtp-profile, configure vap-all to be manual
  • C. Disable intra-vap-privacy for the Authors vap-wireless network
  • D. Increase the transmission power of the AP radio interfaces

Answer: B,C

 

NEW QUESTION 16
Refer to the exhibit.

What does the asterisk (*) symbol beside the channel mean?

  • A. Indicates channels that can be used only when Radio Resource Provisioning is enabled
  • B. Indicates channels that are subject to dynamic frequency selection (DFS) regulations
  • C. Indicates channels that will be scanned by the Wireless Intrusion Detection System (WIDS)
  • D. Indicates channels that cannot be used because of regulatory channel restrictions

Answer: A

 

NEW QUESTION 17
What type of design model does FortiPlanner use in wireless design project?

  • A. Architectural model
  • B. Integration model
  • C. Analytical model
  • D. Predictive model

Answer: A

Explanation:
FortiPlanner will look familiar to anyone who has used architectural or home design software.

 

NEW QUESTION 18
You are investigating a wireless performance issue and you are trying to audit the neighboring APs in the PF environment. You review the Rogue APs widget on the GUI but it is empty, despite the known presence of other APs.
Which configuration change will allow neighboring APs to be successfully detected?

  • A. Enable Monitor channel utilization on the relevant AP profiles.
  • B. Enable Radio resource provisioning on the relevant AP profiles.
  • C. Ensure that all allowed channels are enabled for the AP radios.
  • D. Enable Locate WiFi clients when not connected in the relevant AP profiles.

Answer: B

Explanation:
The ARRP (Automatic Radio Resource Provisioning) profile improves upon DARRP (Distributed Automatic Radio Resource Provisioning) by allowing more factors to be considered to optimize channel selection among FortiAPs. DARRP uses the neighbor APs channels and signal strength collected from the background scan for channel selection.

 

NEW QUESTION 19
As a network administrator, you are responsible for managing an enterprise secure wireless LAN. The controller is based in the United States, and you have been asked to deploy a number of managed APs in a remote office in Germany.
What is the correct way to ensure that the RF channels and transmission power limits are appropriately configured for the remote APs?

  • A. Create a new FortiAP profile and change the county code settings on the profile
  • B. Clone a suitable FortiAP profile and change the county code settings on the profile
  • C. Configure the APs individually by overriding the settings in Managed FortiAPs
  • D. Configure the controller for the correct country code for Germany

Answer: B

 

NEW QUESTION 20
Which of the following is a requirement to generate analytic reports using on-site FortiPresence deployment?

  • A. Wireless network security must be set to open
  • B. Two wireless APs must be sending data
  • C. DTLS encryption on wireless traffic must be turned off
  • D. SQL services must be running

Answer: B

Explanation:
FortiPresence VM is deployed locally on your site and consists of two virtual machines. All the analytics data collected and computed resides locally on the VMs.

 

NEW QUESTION 21
Which statement is correct about security profiles on FortiAP devices?

  • A. Only bridge mode SSIDs can apply the security profiles
  • B. Disable DTLS on FortiAP
  • C. Security profiles on FortiAP devices can use FortiGate subscription to inspect the traffic
  • D. FortiGate performs inspection the wireless traffic

Answer: A

 

NEW QUESTION 22
......

NSE6_FWF-6.4 Exam Dumps, NSE6_FWF-6.4 Practice Test Questions: https://www.dumpstorrent.com/NSE6_FWF-6.4-exam-dumps-torrent.html

Free NSE6_FWF-6.4 Exam Dumps to Pass Exam Easily: https://drive.google.com/open?id=1BPillL_mtub-oEZfPv0JpoCNfpMgl-6v