IT認証試験問題集
毎月、GOWUKAKUは1500人以上の受験者が試験準備を助けて、試験に合格するために受験者にご協力します
 ホームページ / FCSS_SDW_AR-7.4 問題集  / FCSS_SDW_AR-7.4 問題練習

Fortinet FCSS_SDW_AR-7.4 問題練習

FCSS - SD-WAN 7.4 Architect 試験

最新更新時間: 2026/09/21

【秋学習応援セール|10月限定キャンペーン】:FCSS_SDW_AR-7.4 最新真題を買う時、日本語版と英語版両方を同時に獲得できます。

実際の問題集を練習し、試験のポイントを了解し、テストに申し込むするかどうかを決めることができます。

さらに試験準備時間の35%を節約するには、FCSS_SDW_AR-7.4 問題集を使用してください。

 / 3

Question No : 1
Which two statements about SLA targets and SD-WAN rules are true? (Choose two.)

正解:

Question No : 2
Which diagnostic command can you use to show the member utilization statistics measured by performance SLAs for the last 10 minutes?

正解:

Question No : 3
The SD-WAN overlay template helps to prepare SD-WAN deployments. To complete the tasks performed by the SD-WAN overlay template, the administrator must perform some post-run tasks.
What are three mandatory post-run tasks that must be performed? (Choose three.)

正解:

Question No : 4
Refer to the exhibit.



Which statement about the role of the ADVPN device in handling traffic is true?

正解:

Question No : 5
Refer to the exhibit.



An administrator is troubleshooting SD-WAN on FortiGate. A device behind branch1_fgt generates traffic to the 10.0.0.0/8 network. The administrator expects the traffic to match SD-WAN rule ID 1 and be routed over T_INET_0_0. However, the traffic is routed over T_INET_1_0.
Based on the output shown in the exhibit, which two reasons can cause the observed behavior? (Choose two.)

正解:
Explanation:
SD-WAN strategy is Lowest Cost (SLA) as indicated by the "Mode(sla)" flag. Cost SLA uses SLA target, cost, and priority (i.e., interface preference - or order of config unless manually overridden by admin config) as the criteria -- in that order. Both members meet the target, both have 0 cost, and therefore member 3 (T_INET_0) wins the "priority" tiebreaker. So if there is a valid route to the destination through member 3, it will win. The fact that it does not has nothing to do with the configured static route/member priority, which according to SG page 197 "is used as a tiebreaker for ECMP routes when matching implicit SD-WAN rule."

Question No : 6
Two hub-and-spoke groups are connected through a site-to-site IPsec VPN between Hub 1 and Hub 2. The administrator configured ADVPN on both hub-and-spoke groups.



Which two outcomes are expected if a user in Toronto sends traffic to London? (Choose two.)

正解:

Question No : 7
What is the route-tag setting in an SD-WAN rule used for?

正解:
Explanation:
"Configure SD-WAN *rules* to steer traffic to members only if routes have a specific route-tag." Agree with Cyril - although A says the largely same thing as D, route-tag specifically get used by the SD-WAN rule to determine next-hop (i.e., destination). SG p 142 shows "how an administrator can use [route-]tags in SD-WAN rules."

Question No : 8
Refer to the exhibits.
Exhibit A



Exhibit B



Exhibit A shows the source NAT (SNAT) global setting and exhibit B shows the routing table on FortiGate.
Based on the exhibits, which two actions does FortiGate perform on existing sessions established over port2, if the administrator increases the static route priority on port2 to 20? (Choose two.)

正解:

Question No : 9
Exhibit.



The exhibit shows VPN event logs on FortiGate. In the output shown in the exhibit, which statement is true?

正解:

Question No : 10
Refer to the exhibits.
Exhibit A



Exhibit B



Exhibit A shows the configuration for an SD-WAN rule and exhibit B shows the respective rule status, the routing table, and the member status.
The administrator wants to understand the expected behavior for traffic matching the SD-WAN rule. Based on the exhibits, what can the administrator expect for traffic matching the SD-WAN rule?

正解:

Question No : 11
Exhibit.



The exhibit shows the output of the command diagnose sys sdwan health-check status collected on a FortiGate device.
Which two statements are correct about the health check status on this FortiGate device? (Choose two.)

正解:
Explanation:
According to the FortiGate / FortiOS 6.4.2 Administration Guide, the health check status command displays the status of the health check probes for each SD-WAN member interface. The output includes the following information:
state: the current state of the interface, either alive or dead
packet-loss: the percentage of packets lost during the health check
latency: the average round-trip time in milliseconds
jitter: the variation in latency
mos: the mean opinion score, a measure of voice quality
bandwidth: the available bandwidth in kilobits per second for each direction (up, down, bi)
sla map: a bitmap that indicates which SLA criteria are met or failed
Based on the exhibit, the following statements are correct:
The health-check VPN_PING orders the members according to the lowest jitter. This means that the interface with the lowest jitter value is listed first, followed by the next lowest, and so on1. In the exhibit, the order is T_MPLS, T_INET_1, and T_INET_0.
There is no SLA criteria configured for the health-check Level3_DNS. This means that the health check does not use any SLA parameters to determine the state of the interface2. In the exhibit, the sla map value is 0x0 for both port1 and port2, indicating that no SLA criteria are applied.

Question No : 12
Which two statements about the SD-WAN zone configuration are true? (Choose two.)

正解:

Question No : 13
Which statement about SD-WAN zones is true?

正解:
Explanation:
Option A is incorrect because SD-WAN zones can include multiple interface types (e.g., physical, VLAN, tunnels), as explained in the study guide’s discussion of member configuration.
Option B is correct because an SD-WAN zone can logically have zero members (an empty zone) and up to a large number of members, with 512 being a reasonable upper bound supported by Fortinet’s scalability, even if not explicitly stated in the study guide.
Option C is incorrect because the study guide clearly states that SD-WAN zones can be used in static route definitions, enhancing routing flexibility.
Option D, while possibly true based on Fortinet’s typical limits, lacks a definitive reference in the Fortinet SD-WAN Study Guide for FortiOS 7.2 to confirm "32" as the exact number, making it less certain than Option B.
Reference: Fortinet SD-WAN Study Guide for FortiOS 7.2, Section 3: Members, Zones, and Performance SLAs (description of interface types and zones).
Fortinet SD-WAN Study Guide for FortiOS 7.2, Section 4: Routing and Sessions (use of SD-WAN zones in static routes).
Fortinet Documentation: SD-WAN members and zones | FortiGate / FortiOS 7.2.4 (general behavior and flexibility of zones).

Question No : 14
What are two benefits of using the Internet service database (ISDB) in an SD-WAN rule? (Choose two.)

正解:

Question No : 15
Refer to the exhibit.



The exhibit shows the SD-WAN rule status and configuration.
Based on the exhibit, which change in the measured packet loss will make T_INET_1_0 the new preferred member?

正解:

 / 3
Fortinet