New Year Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

NSE6_SDW_AD-7.6 Exam Dumps - Fortinet Network Security Expert Questions and Answers

Question # 4

(Which two features must you configure before FortiGate can steer traffic according to SD-WAN rules? Choose two answers.)

Options:

A.

Security profiles

B.

Underlay links

C.

Overlay links

D.

Traffic shaping

E.

Firewall policies

Buy Now
Question # 5

(Refer to the exhibit.

What can you conclude from the output shown? Choose one answer.)

Options:

A.

It is a spoke device. SD-WAN rule 3 is configured with nine members.

B.

It is a spoke device. The members of SD-WAN rule 3 are grouped into two zones.

C.

It is a hub device. It allowed the establishment of three auto-discovery VPN (ADVPN) shortcuts.

D.

It is a spoke device. SD-WAN rule 4 allows three shortcut tunnels.

Buy Now
Question # 6

(You configure the overlay tunnels for an SD-WAN hub-and-spoke topology defined with IPsec tunnels, BGP on loopback, and dynamic BGP.

Which are two recommended IPsec settings for this topology? Choose two answers.)

Options:

A.

On the spoke, set the parameter net-device to enable.

B.

On the spoke, configure the parameter localid.

C.

On the hub, set the parameter mode-cfg to enable.

D.

On the hub, set the tunnel type to static.

Buy Now
Question # 7

SD-WAN interacts with many other FortiGate features. Some of them are required to allow SD-WAN to steer the traffic.

Which three configuration elements that you must configure before FortiGate can steer traffic according to SD-WAN rules? (Choose three.)

Options:

A.

Firewall policies

B.

Interfaces

C.

Security profiles

D.

Traffic shaping

E.

Routing

Buy Now
Question # 8

Refer to the exhibits.

The exhibits show the configuration for SD-WAN performance. SD-WAN rule, the application IDs of Facebook and YouTube along with the firewall policy configuration and the underlay zone status.

Which two statements are true about the health and performance of SD-WAN members 3 and 4? (Choose two.)

Options:

A.

Only related TCP traffic is used for performance measurement.

B.

The performance is an average of the metrics measured for Facebook and YouTube traffic passing through the member.

C.

Encrypted traffic is not used for the performance measurement.

D.

FortiGate identifies the member as dead when there is no Facebook and YouTube traffic passing through the member.

Buy Now
Question # 9

(Refer to the exhibit.

An SD-WAN zone configuration on the FortiGate GUI is shown.

What can you conclude about the zone and member configuration on this device? Choose one answer.)

Options:

A.

You can delete the virtual-wan-link zone.

B.

The WAN2 zone contains no member.

C.

You can delete the WAN1 zone.

D.

You can add the member B-125 to the WAN3 zone and keep it as a member of the Test zone.

Buy Now
Question # 10

Refer to the exhibit that shows an SD-WAN zone configuration on the FortiManager GUI.

Based on the exhibit, how will the FortiGate device behave after it receives this configuration?

Options:

A.

The configuration instructs FortiGate to choose an ADVPN shortcut based on SD-WAN information.

B.

The configuration instructs FortiGate to allow ADVPN shortcuts for the tunnels of this SD-WAN zone.

C.

The configuration instructs FortiGate to establish shortcuts only when at least two members meet the SLA target.

D.

The configuration instructs FortiGate to establish shortcuts only for overlay interfaces that meet the SLA target HUB1_HC.

Buy Now
Question # 11

Refer to the exhibits.

The first exhibit shows the SD-WAN zone HUB1 and SD-WAN member configuration from an SD-WAN template, and the second exhibit shows the output of command diagnose sys sdwan member collected on a FortiGate device.

Which statement best describes what the diagnose output shows?

Options:

A.

The diagnose output shows that HUB1-VPN1 and all HUBx-VPNy members are dead.

B.

The diagnose output does not correspond to a device configured with the SD-WAN template shown in the exhibit.

C.

The diagnose output was collected on the device branch2_fgt.

D.

The diagnose output was collected on the device branch1_fgt

Buy Now
Question # 12

You have configured the performance SLA with the probe mode as Prefer Passive.

What are two observable impacts of this configuration? (Choose two.)

Options:

A.

FortiGate passively monitors the member if TCP traffic is passing through the member.

B.

After FortiGate switches to active mode, the SLA performance rule falls back to passive monitoring after 3 minutes.

C.

FortiGate passively monitors the member if ICMP traffic is passing through the member.

D.

During passive monitoring, the SLA performance rule cannot detect dead members.

E.

FortiGate can offload the traffic that is subject to passive monitoring to hardware.

Buy Now
Question # 13

Refer to the exhibits.

The exhibits show an SD-WAN event log, the member status, and the SD-WAN rule configuration.

Which two conclusions can you draw from the information shown? (Choose two.)

Options:

A.

The administrator configured the service ID 1 with the highest priority member for port2.

B.

Port2 has a lower latency than port1.

C.

FortiGate updated the outgoing interface list on the rule so it prefers port2.

D.

The administrator configured the SD-WAN rule ID 1 with the default strategy mode.

Buy Now
Exam Code: NSE6_SDW_AD-7.6
Exam Name: Fortinet NSE 6 - SD-WAN 7.6 Enterprise Administrator
Last Update: Jan 17, 2026
Questions: 95
NSE6_SDW_AD-7.6 pdf

NSE6_SDW_AD-7.6 PDF

$25.5  $84.99
NSE6_SDW_AD-7.6 Engine

NSE6_SDW_AD-7.6 Testing Engine

$28.5  $94.99
NSE6_SDW_AD-7.6 PDF + Engine

NSE6_SDW_AD-7.6 PDF + Testing Engine

$40.5  $134.99