View all questions & answers for the NSE 7 - Enterprise Firewall 7.6 Administrator Exam Materials exam


Question 15 Discussion

Refer to the exhibit. The VDOM configuration on a FortiGate device is shown. You discover that web filtering stopped working in Core1 and Core2 after a maintenance window. What are two reasons why web filtering stopped working? (Choose two answers)

  • A. The root VDOM does not use a VDOM link to connect with the Core1 and Core2 VDOMs.
  • B. The root VDOM does not have access to any valid, public Fortinet Distribution Network (FDN).
  • C. The root VDOM does not have access to FortiManager in a closed network.
  • D. The Core1 and Core2 VDOMs must also be enabled as management VDOMs to receive FortiGuard updates.
Correct Answer: A,B

Brave-Dump Clients Votes

BC 66.67%
AB 33.33%

Comments



Mostafa Hasanin Abdelhamid 2025-10-29 17:26:41

Selected Answers: A, B


I think, it's A, B


Jimiko Allen Dino 2025-11-12 12:17:35

Selected Answers: A, B


Since Core1 and Core2 are not designated as management VDOMs, they rely on the root VDOM for connectivity to external resources such as FortiGuard updates. If the root VDOM lacks a VDOM link to these VDOMs or cannot reach FortiGuard services, security features like web filtering will stop working


Hasan Ahmed 2025-11-27 15:47:54

Selected Answers: A, B


Yes, A, B is the Correct Answer


Mike 2025-12-04 17:35:36

Selected Answers: B, C


study guide page 172
b and c are correct
b: since the root vdom is the Management vdom it needs access to Fortiguard
c: you can configure FortiManager as a FDS so in that case the root vdom would need access to the FortiManager to get updates.
A is wrong since a non-management vdom does not update FortiGuard resources, therefore it does not need internet access or a link to the management vdom


Podb 2025-12-14 02:34:28

Selected Answers: B, C


BC correct answer


Anonymous User 2025-12-20 00:54:11

Selected Answers: B, C


I think B&C


Anonymous User 2026-01-09 15:39:51

Selected Answers: B, C


Page 73. Answer is BC


Adam 2026-01-18 08:35:52

Selected Answers: B, C


Page 73 of Study Guide:
If your management VDOM does not have internet access or is not connected to a FortiManager serving as a FortiGuard Distribution Server (FDS) in a closed network, then the firewall and all VDOMs may experience issues with the FortiGuard databases, potentially leading to firewall malfunctions.

Page 74 of Study Guide:
If your VDOM (VDOM1, for instance) lacks internet access, and you need to connect through another firewall VDOM (root) that has internet, an inter-VDOM Link enables VDOM1 to access the internet via the root VDOM.

As the question mentions web filtering stopped working after the maintenance window, so it was working before it, so the VDOM links were already established considering no change in having "root" VDOM as the management VDOM, then answer is B (public FDS) or C (FMG FDS)


Anonymous User 2026-01-19 16:50:25

Selected Answers: B, C


If the device is configured to use the public internet, the root VDOM must have a valid path to the public FDN. If this access is lost, filtering stops. If the device is in a closed network (no internet access), it is typically configured to use a local FortiManager as its FDN server. If the root VDOM cannot reach the FortiManager, filtering stops.


Anonymous User 2026-02-19 14:27:42

Selected Answers: A, B


why C and D are wrong :
C :Web filtering works perfectly without FortiManager
D :Only ONE management VDOM is allowed


Anonymous User 2026-03-04 14:57:18

Selected Answers: B, C


Webfiltering will stop working when the fortigate no longer has access to the fortiguard servers. The fortigates can connect to fortiguard either directly via the internet (option B) or via Fortimanager in a closed network where the fortis don't have direct internet access. (C).


Anonymous User 2026-03-04 14:57:44

Selected Answers: B, C


Webfiltering will stop working when the fortigate no longer has access to the fortiguard servers. The fortigates can connect to fortiguard either directly via the internet (option B) or via Fortimanager in a closed network where the fortis don't have direct internet access. (C).