What is the Fortinet NSE7_OTS-6.4 Exam?

Fortinet NSE7_OTS-6.4 certification is an internationally recognized certification for professionals in the area of network security who want to validate their technical skills and knowledge. Candidates must pass one exam that covers five domains - network security, routing, switching, infrastructure management, security management and troubleshooting.

Fortinet NSE 7 - OT Security 6.4 Sample Questions (Q19-Q24):

Which three criteria can a FortiGate device use to look for a matching firewall policy to process traffic? (Choose three.)

  • A. Source defined as internet services in the firewall policy
  • B. Services defined in the firewall policy.
  • C. Destination defined as internet services in the firewall policy
  • D. Highest to lowest priority defined in the firewall policy
  • E. Lowest to highest policy ID number

Answer: A,B,C

An OT administrator deployed many devices to secure the OT network. However, the SOC team is reporting that there are too many alerts, and that many of the alerts are false positive. The OT administrator would like to find a solution that eliminates repetitive tasks, improves efficiency, saves time, and saves resources.
Which products should the administrator deploy to address these issues and automate most of the manual tasks done by the SOC team?

  • A. A syslog server and FortiSIEM
  • B. FortiSOAR and FortiSIEM
  • C. FortiSIEM and FortiManager
  • D. FortiSandbox and FortiSIEM

Answer: B

What triggers Layer 2 polling of infrastructure devices connected in the network?

  • A. A failed Layer 3 poll
  • B. A matched security policy
  • C. A linkup or linkdown trap
  • D. A matched profiling rule

Answer: C

Refer to the exhibit
In the topology shown in the exhibit, both PLCs can communicate directly with each other, without going through the firewall.
Which statement about the topology is true?

  • A. This integration solution expands VLAN capabilities from Layer 2 to Layer 3.
  • B. An administrator can create firewall policies in the switch to secure between PLCs.
  • C. There is no micro-segmentation in this topology.
  • D. PLCs use IEEE802.1Q protocol to communicate each other.

Answer: C

What can be assigned using network access control policies?

  • A. Profiling rules
  • B. FortiNAC device polling methods
  • C. Logical networks
  • D. Layer 3 polling intervals

Answer: C


