
FortinetNSE 7 - Enterprise Firewall Administrator
Domain 3Objective 1
Manage SSL/SSH Inspection Profiles, Based on a Scenario NSE7-ENTERPRISE-FIREWALL-ADMINISTRATOR Practice Questions (Page 2)
Part of the Security Profiles domain, which makes up ~23% of our current practice bank. Fortinet does not publish an official question count, but from its 70-minute exam (~30–45 total, ~7–10 in this domain), expect 2–3 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)
26questions here
6free pages
6concepts
Questions 6–10
- 6
Which traffic can be exempted from SSL/SSH inspection using the exemption list?
Select an answer first - 7
A legal firm wants to ensure that all HTTPS traffic to external legal research databases is encrypted and that the certificates are valid, but the firm is concerned about the liability of decrypting privileged communications. Which inspection mode should the administrator choose?
Select an answer first - 8
A financial services firm is using certificate inspection for all outbound HTTPS traffic. The compliance team has identified that traffic to a specific regulatory reporting service must be exempt from inspection due to legal requirements. The administrator adds the domain to the exemption list, but the traffic is still being inspected. What is the most likely reason and the correct fix?
Select an answer first - 9
Which component is required in a full inspection profile to decrypt SSL traffic?
Select an answer first - 10
Which setting in a full inspection profile controls the cryptographic algorithms used for the decrypted TLS sessions?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Fortinet. “NSE7-ENTERPRISE-FIREWALL-ADMINISTRATOR” is a trademark of its owner, used for identification only.