[2021] NSE6_FWF-6.4 PDF Questions - Perfect Prospect To Go With NewPassLeader Practice Exam [Q15-Q38]

Share

[2021] NSE6_FWF-6.4 PDF Questions - Perfect Prospect To Go With NewPassLeader Practice Exam

Fortinet NSE6_FWF-6.4 Pdf Questions - Outstanding Practice To your Exam

NEW QUESTION 15
When configuring a wireless network for dynamic VLAN allocation, which three IETF attributes must be supplied by the radius server? (Choose three.)

  • A. 65 Tunnel-Medium-Type
  • B. 83 Tunnel-Preference
  • C. 64 Tunnel-Type
  • D. 81 Tunnel-Private-Group-ID
  • E. 58 Egress-VLAN-Name

Answer: A,C,D

Explanation:
The RADIUS user attributes used for the VLAN ID assignment are:
IETF 64 (Tunnel Type)-Set this to VLAN.
IETF 65 (Tunnel Medium Type)-Set this to 802
IETF 81 (Tunnel Private Group ID)-Set this to VLAN ID.

 

NEW QUESTION 16
Which statement describes FortiPresence location map functionality?

  • A. Provides real-time insight into user movements
  • B. Provides real-time insight into user online activity
  • C. Provides real-time insight into user usage stats
  • D. Provides real-time insight into user purchase activity

Answer: C

Explanation:
This geographical data analysis provides real-time insights into user behavior.

 

NEW QUESTION 17
Which two phases are part of the process to plan a wireless design project? (Choose two.)

  • A. Project information phase
  • B. Installation phase
  • C. Site survey phase
  • D. Hardware selection phase

Answer: B,C

Explanation:
Reference:
https://www.automation.com/en-us/articles/2015-2/wireless-device-network-planning-and-design

 

NEW QUESTION 18
Which two configurations are compatible for Wireless Single Sign-On (WSSO)? (Choose two.)

  • A. A VAP configured to authenticate locally on FortiGate
  • B. A VAP configured to authenticate using a radius server
  • C. A VAP configured for WPA2 or 3 Enterprise
  • D. A VAP configured for captive portal authentication

Answer: B,C

Explanation:
In the SSID choose WPA2-Enterprise authentication.
WSSO is RADIUS-based authentication that passes the user's user group memberships to the FortiGate.

 

NEW QUESTION 19
When using FortiPresence as a captive portal, which two types of public authentication services can be used to access guest Wi-Fi? (Choose two.)

  • A. Hardware security token authentication
  • B. Social networks authentication
  • C. Short message service authentication
  • D. Software security token authentication

Answer: A,B

Explanation:
This information along with the social network authentication logins with Facebook, Google, Instagram, LinkedIn, or FortiPresence using your WiFi.
Captive Portal configurations for social media logins and internet access. You can add and manage sites using the integrated Google maps and manoeuvre your hardware infrastructure easily.

 

NEW QUESTION 20
What type of design model does FortiPlanner use in wireless design project?

  • A. Predictive model
  • B. Analytical model
  • C. Integration model
  • D. Architectural model

Answer: D

Explanation:
FortiPlanner will look familiar to anyone who has used architectural or home design software.

 

NEW QUESTION 21
Which two roles does FortiPresence analytics assist in generating presence reports? (Choose two.)

  • A. Reporting potential threats by guests on site
  • B. Predicting the number of guest users visiting on-site
  • C. Gathering details about on site visitors
  • D. Comparing current data with historical records

Answer: B,C

 

NEW QUESTION 22
Which two statements about background rogue scanning are correct? (Choose two.)

  • A. When detecting rogue APs, a dedicated radio configured for background scanning can suppress the rogue AP
  • B. A dedicated radio configured for background scanning can support the connection of wireless clients
  • C. A dedicated radio configured for background scanning can detect rogue devices on all other channels in its configured frequency band
  • D. Background rogue scanning requires DARRP to be enabled on the AP instance

Answer: A,B

Explanation:
To enable rogue AP scanning

 

NEW QUESTION 23
Which two statements about distributed automatic radio resource provisioning (DARRP) are correct? (Choose two.)

  • A. DARRP performs continuous spectrum analysis to detect sources of interference. It uses this information to allow the AP to select the optimum channel.
  • B. DARRP performs measurements of the number of BSSIDs and their signal strength (RSSI). The controller then uses this information to select the optimum channel for the AP.
  • C. DARRP measurements can be scheduled to occur at specific times.
  • D. DARRP requires that wireless intrusion detection (WIDS) be enabled to detect neighboring devices.

Answer: A,D

Explanation:
DARRP (Distributed Automatic Radio Resource Provisioning) technology ensures the wireless infrastructure is always optimized to deliver maximum performance. Fortinet APs enabled with this advanced feature continuously monitor the RF environment for interference, noise and signals from neighboring APs, enabling the FortiGate WLAN Controller to determine the optimal RF power levels for each AP on the network. When a new AP is provisioned, DARRP also ensures that it chooses the optimal channel, without administrator intervention.

 

NEW QUESTION 24
Six APs are located in a remotely based branch office and are managed by a centrally hosted FortiGate. Multiple wireless users frequently connect and roam between the APs in the remote office.
The network they connect to, is secured with WPA2-PSK. As currently configured, the WAN connection between the branch office and the centrally hosted FortiGate is unreliable.
Which configuration would enable the most reliable wireless connectivity for the remote clients?

  • A. Configure a tunnel mode wireless network and enable split tunneling to the local network
  • B. Configure a bridge mode wireless network and enable the Local standalone configuration option
  • C. Configure a bridge mode wireless network and enable the Local authentication configuration option
  • D. Install supported FortiAP and configure a bridge mode wireless network

Answer: A

 

NEW QUESTION 25
Where in the controller interface can you find a wireless client's upstream and downstream link rates?

  • A. On the controller CLI, using the WiFi Client monitor
  • B. On the AP CLI, using the cw_diag -d sta command
  • C. On the AP CLI, using the cw_diag ksta command
  • D. On the controller CLI, using the diag wireless-controller wlac -d sta command

Answer: D

 

NEW QUESTION 26
You are investigating a wireless performance issue and you are trying to audit the neighboring APs in the PF environment. You review the Rogue APs widget on the GUI but it is empty, despite the known presence of other APs.
Which configuration change will allow neighboring APs to be successfully detected?

  • A. Ensure that all allowed channels are enabled for the AP radios.
  • B. Enable Radio resource provisioning on the relevant AP profiles.
  • C. Enable Monitor channel utilization on the relevant AP profiles.
  • D. Enable Locate WiFi clients when not connected in the relevant AP profiles.

Answer: B

Explanation:
The ARRP (Automatic Radio Resource Provisioning) profile improves upon DARRP (Distributed Automatic Radio Resource Provisioning) by allowing more factors to be considered to optimize channel selection among FortiAPs. DARRP uses the neighbor APs channels and signal strength collected from the background scan for channel selection.

 

NEW QUESTION 27
......

Online Questions - Outstanding Practice To your NSE6_FWF-6.4 Exam: https://www.newpassleader.com/Fortinet/NSE6_FWF-6.4-exam-preparation-materials.html

Practice To NSE6_FWF-6.4 - NewPassLeader Remarkable Practice On your Fortinet NSE 6 - Secure Wireless LAN 6.4 Exam: https://drive.google.com/open?id=1lRuOg2yAGNmbK5bDBp1EkhI9gz_jEO-w