exam questions

Exam NSE7_EFW-7.0 All Questions

View all questions & answers for the NSE7_EFW-7.0 exam

Exam NSE7_EFW-7.0 topic 1 question 45 discussion

Actual exam question from Fortinet's NSE7_EFW-7.0
Question #: 45
Topic #: 1
[All NSE7_EFW-7.0 Questions]

Refer to the exhibit, which shows the output of diagnose sys session stat.

Which statement about the output shown in the exhibit is correct?

  • A. There are two sessions that have not been removed in case of any out-of-order packets that arrive.
  • B. There are 166 TCP sessions waiting to complete the three-way handshake.
  • C. 162 sessions have been deleted because of memory page exhaustion.
  • D. All the sessions in the session table are TCP sessions.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
racdab
Highly Voted 1 year, 4 months ago
Selected Answer: A
A. B. NO Usually ICMP sessions (they don't have ESTABLISHED, SYN_SENT and so on states) C. NO memory_tension_drop=0 D. NO Total number of sessions: session_count=591; TCP: 166+1+3+2=172
upvoted 8 times
racdab
1 year, 4 months ago
when forti receives the syn packet the second digit is 2 it changes to 3 whene forti receives the syn ack packet after the three-wayhandshek ,the value changes to 1 when a session is closed by both sides, forti keeps that session in the session table for a few seconds more , to allow for any out of order pakets that might arrive after the fin -ACK packet .yhis is state 5 (time wait)
upvoted 4 times
...
...
Georgezhong
Most Recent 10 months, 2 weeks ago
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Session-counter-information/ta-p/197839
upvoted 1 times
...
chyeahhh
11 months, 3 weeks ago
Selected Answer: A
study guide page 92: FortiGate keeps a session table for a few seconds more in case any out-of-order packets arrive. This is state value 5. State value 5 = TIME_WAIT
upvoted 2 times
...
fottyfan
1 year ago
And maybe the original exam answer B was NAT port exhaustion (?)
upvoted 1 times
...
fottyfan
1 year ago
For A, shouldn't be the state of the TCP session be CLOSED?
upvoted 1 times
...
certifi46
1 year ago
Selected Answer: A
2 in TIME_WAIT sate
upvoted 1 times
...
mader
1 year, 2 months ago
Selected Answer: A
right answer - A
upvoted 1 times
...
Drakfeut
1 year, 4 months ago
=> A tcp_timewait_timer = a closed session remain in the session table for a few seconds more to allow any out of sequence packet (by default 1sec) => A
upvoted 2 times
...
jjejje
1 year, 4 months ago
Selected Answer: A
answer
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...