Exam Nse7 Youtube

You might also like

Download as docx, pdf, or txt
Download as docx, pdf, or txt
You are on page 1of 2

Exam code: NSE7_EFW

Exam name: NSE7 Enterprise Firewall – FortiOS 5.4


Comments: Corresponds to the Enterprise Firewall course, which is based on FortiOS
5.4.1.
Status: To be retired on September 21 , 2019
st

1)
#diagnose debug authd fsso list
FSSO logon-IP:192.168.3.1 User:STUDENT Groups:TRAININGAD/USERS Workstation:
INTERNAL2.TRAINING.LAB

2) Reduce the memory utilization in a Fortigate

Reduce session time to live // config system session-ttl

Reduce the maximum file size to inspect

3) For dial-up ipsec vpn phase 2 + xauth

#diagnose debug app ike -1 #diag debug enable

#order of debugging

 Phase1; IKE mode configuration; phase 2; xauth

4) Traffic log

#status=failure msg=”NAT port is exhausted”

the limit of maximum nat sharing the same nat port

5) HA session synchronization in a HA Cluster. Which flag is added to a primary unit’s session that
indicate that session is synchronized to the secondary unit?

#config sys ha

#set session-pickup enable

#diag sys session list | grep synced –c

https://www.youtube.com/watch?v=14zQJBilx00

#disconnect session

#execute disconnect-admin-session ? // get sys info admin status

You might also like