{"id":17078,"date":"2026-09-21T06:22:12","date_gmt":"2026-09-21T06:22:12","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=17078"},"modified":"2026-09-21T06:22:12","modified_gmt":"2026-09-21T06:22:12","slug":"fortinet-nse6_sdw_ad-7-6-practice-test-questions-and-exam-dumps-part8-q141-160","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/fortinet-nse6_sdw_ad-7-6-practice-test-questions-and-exam-dumps-part8-q141-160\/","title":{"rendered":"Fortinet NSE6_SDW_AD-7.6 Practice Test Questions and Exam Dumps Part8 Q141-160"},"content":{"rendered":"<h2><b>View Full <\/b><a href=\"https:\/\/www.examlabs.com\/nse6-sdw-ad-7-6-exam-dumps\"><b>Fortinet NSE6_SDW_AD-7.6 Exam Dumps<\/b><\/a><b> and Practice Test Dumps.<\/b><\/h2>\n<p>&nbsp;<\/p>\n<h3><b>Question 141<\/b><\/h3>\n<p><b>Which SD-WAN feature allows traffic to be classified according to the application being used?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Static Routing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Application Identification<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DHCP Relay<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">ARP Inspection<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Application identification allows FortiGate to recognize application traffic and use that information in SD-WAN policies. This is useful because different applications can have different network requirements. For example, voice and video traffic may require low latency and jitter, while backup traffic can often tolerate less favorable conditions. Once an application is identified, an SD-WAN rule can apply a specific steering strategy and Performance SLA requirements. This provides more granular control than simply routing all traffic according to destination. Application-aware steering is therefore an important capability for organizations that need different WAN treatment for different applications.<\/span><\/p>\n<h3><b>Question 142<\/b><\/h3>\n<p><b>Which SD-WAN metric indicates the amount of delay experienced by packets across a monitored path?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Packet Loss<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Jitter<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Latency<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Throughput<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Latency measures the delay experienced by packets as they travel across a network path. In an SD-WAN environment, FortiGate can monitor latency through Performance SLA health checks and compare the measured value with configured thresholds. High latency can negatively affect interactive applications such as remote desktop, voice, video conferencing, and business applications. Latency is different from jitter because jitter measures variation in packet delay rather than the overall delay itself. By monitoring latency, FortiGate can identify WAN paths that are not meeting application requirements and potentially select another eligible SD-WAN member.<\/span><\/p>\n<h3><b>Question 143<\/b><\/h3>\n<p><b>What is the primary purpose of an SD-WAN Performance SLA?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To monitor WAN path quality<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To create administrator accounts<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To configure antivirus signatures<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To assign switch VLANs<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Performance SLA is used to monitor the quality and availability of WAN paths. FortiGate can measure parameters such as latency, jitter, packet loss, and reachability against configured targets. These measurements allow SD-WAN to determine whether a member satisfies the conditions required by an SD-WAN rule. If a path becomes degraded, another eligible member may be selected depending on the configured strategy. Performance SLA therefore provides dynamic information about WAN health rather than relying only on whether an interface is physically up. Proper thresholds are important so that traffic is steered according to actual application requirements.<\/span><\/p>\n<h3><b>Question 144<\/b><\/h3>\n<p><b>Which SD-WAN strategy is designed to distribute traffic across multiple eligible members?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Best Quality<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Lowest Cost<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Load Balance<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Manual<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Load Balance is designed to distribute traffic among multiple eligible SD-WAN members. This can help organizations use available WAN resources more efficiently instead of relying entirely on a single connection. The exact distribution depends on the SD-WAN configuration and traffic characteristics. Load balancing can be useful when multiple WAN links have sufficient quality and the organization wants to utilize their combined capacity. It differs from Best Quality, which focuses primarily on path performance, and Lowest Cost, which considers cost-related preferences. Administrators should select the strategy that matches their traffic patterns and operational requirements.<\/span><\/p>\n<h3><b>Question 145<\/b><\/h3>\n<p><b>Which technology is commonly used to create encrypted tunnels between FortiGate devices?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">IPsec VPN<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DHCP<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DNS<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">SNMP<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">IPsec VPN is commonly used to create secure encrypted tunnels between FortiGate devices. In SD-WAN deployments, IPsec tunnels can operate over different WAN transports and provide a secure overlay between sites. Multiple tunnels can be established to support redundancy and different connectivity options. SD-WAN can then monitor these tunnel paths and apply traffic-steering rules based on application requirements and Performance SLA results. The IPsec layer provides encryption and secure connectivity, while SD-WAN provides path-selection capabilities. Together, these technologies can create a flexible and secure multi-WAN architecture for branch connectivity.<\/span><\/p>\n<h3><b>Question 146<\/b><\/h3>\n<p><b>Which routing protocol is commonly used to dynamically exchange routes in larger SD-WAN environments?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">FTP<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">SMTP<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">BGP<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DHCP<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">BGP can dynamically exchange routing information between FortiGate devices and other routing domains. In larger SD-WAN environments, dynamic routing can reduce the need for manually configured static routes. BGP can advertise reachable networks and react to topology changes, making it useful for scalable deployments. It can operate across suitable VPN overlays and integrate with SD-WAN architectures. Administrators can also use routing policies to control which routes are advertised or accepted. The exact BGP design depends on the network topology, addressing scheme, hub-and-spoke structure, and overall routing requirements.<\/span><\/p>\n<h3><b>Question 147<\/b><\/h3>\n<p><b>Which SD-WAN metric measures variation in packet delivery timing?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Latency<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Packet Loss<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Jitter<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Bandwidth<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Jitter measures variation in packet delivery timing. A network path may have acceptable average latency but still experience significant jitter if packet delays vary considerably. This can negatively affect real-time applications such as voice and video because these applications depend on relatively consistent packet arrival. FortiGate can measure jitter through Performance SLA monitoring and compare it against configured thresholds. If jitter becomes excessive, an SD-WAN rule can potentially select another suitable member. Monitoring jitter separately from latency provides a more complete view of WAN quality for applications that are sensitive to timing variations.<\/span><\/p>\n<h3><b>Question 148<\/b><\/h3>\n<p><b>Which Fortinet platform is primarily designed for centralized FortiGate configuration and device management?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">FortiAnalyzer<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">FortiManager<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">FortiMail<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">FortiAuthenticator<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">FortiManager provides centralized management and configuration capabilities for FortiGate devices. It can organize managed devices and help administrators distribute policies and configuration changes from a central location. This is especially useful for SD-WAN deployments containing many branch FortiGates because common configurations can be standardized and deployed more efficiently. FortiManager can also help administrators manage configuration consistency across multiple sites. FortiAnalyzer has a different primary purpose, focusing on log collection, analysis, and reporting. Understanding the difference between these platforms is important when designing centralized Fortinet management and monitoring.<\/span><\/p>\n<h3><b>Question 149<\/b><\/h3>\n<p><b>What does packet loss indicate on an SD-WAN monitored path?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Variation in delay<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Packets that were not successfully delivered<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Available bandwidth<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Application priority<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Packet loss indicates that some packets transmitted across the network path did not successfully reach their intended destination. Packet loss can occur because of congestion, unreliable connections, overloaded equipment, or other network problems. High packet loss can significantly affect applications, especially voice, video, and interactive services. FortiGate Performance SLA can monitor packet loss and compare the measured value against configured thresholds. If the loss level becomes unacceptable, an SD-WAN rule can potentially steer traffic toward another eligible member. This helps maintain application reliability when WAN conditions change.<\/span><\/p>\n<h3><b>Question 150<\/b><\/h3>\n<p><b>Which topology uses central hub devices to connect multiple branch or spoke locations?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Full Mesh<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Ring<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Hub-and-Spoke<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Point-to-Point<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A hub-and-spoke topology uses central hub locations to connect multiple branch or spoke sites. This architecture can simplify centralized routing, security inspection, and network management. Traditionally, branch-to-branch communication may pass through the hub, which can create additional traffic flow and latency. Fortinet technologies such as ADVPN can provide more direct branch connectivity in suitable deployments. SD-WAN can operate within this architecture and select appropriate paths according to configured rules and Performance SLA measurements. Hub-and-spoke designs are commonly used when centralized control and scalable branch connectivity are important considerations.<\/span><\/p>\n<h3><b>Question 151<\/b><\/h3>\n<p><b>Which feature can identify predefined Internet services for use in SD-WAN traffic matching?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Internet Service Database<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DHCP Server<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DNS Forwarder<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">ARP Table<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Internet Service Database provides predefined information about supported Internet services and their associated destinations. SD-WAN rules can use this information to match traffic without requiring administrators to manually enter every destination IP address. This can simplify policies for cloud applications and other Internet-based services that may use multiple or changing addresses. Using ISDB-based matching can reduce administrative effort and make SD-WAN policies easier to maintain. Administrators can then associate specific Internet services with appropriate path-selection strategies and Performance SLA requirements based on the organization&#8217;s traffic and application needs.<\/span><\/p>\n<h3><b>Question 152<\/b><\/h3>\n<p><b>What is a major benefit of using multiple WAN connections with SD-WAN?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It removes all firewall policies<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It guarantees equal latency on every link<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It provides additional path and failover options<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It eliminates the need for routing<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Multiple WAN connections provide additional path choices and improve resilience when used with SD-WAN. FortiGate can monitor the available connections and apply configured steering policies to determine which path should carry specific traffic. If a connection becomes unavailable or fails its required SLA conditions, another eligible member can potentially carry the traffic. Multiple WAN links can also provide additional capacity and allow organizations to combine different transport technologies. However, simply having multiple links does not guarantee effective failover. Proper SD-WAN rules, routing, health checks, and security policies are required.<\/span><\/p>\n<h3><b>Question 153<\/b><\/h3>\n<p><b>Which FortiManager feature is useful for applying standardized SD-WAN configurations to multiple branches?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Configuration Templates<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Packet Capture<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DNS Filter<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Antivirus Scanner<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Configuration templates in FortiManager can help administrators standardize and distribute configurations across multiple FortiGate devices. In an SD-WAN deployment, many branch offices may require similar settings for WAN interfaces, VPNs, routing, SD-WAN rules, and security policies. Templates reduce the amount of repetitive manual configuration and help maintain consistency. Device-specific parameters can still be customized when required. This approach becomes increasingly valuable as the number of branches grows. Centralized templates also make it easier to apply planned configuration changes systematically rather than configuring every FortiGate individually.<\/span><\/p>\n<h3><b>Question 154<\/b><\/h3>\n<p><b>Which SD-WAN strategy focuses on selecting a path according to measured network quality?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Manual<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Best Quality<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Load Balance<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Lowest Cost<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Best Quality focuses on selecting an appropriate path according to measured network performance. FortiGate can use Performance SLA information such as latency, jitter, and packet loss when evaluating available members. This makes the strategy useful for applications where service quality is more important than simply minimizing cost. If the preferred path becomes degraded, another eligible member may be selected according to the rule and SLA conditions. Administrators should configure suitable thresholds because overly strict values may exclude usable paths, while overly relaxed values may allow degraded WAN links to continue carrying sensitive traffic.<\/span><\/p>\n<h3><b>Question 155<\/b><\/h3>\n<p><b>What is the primary purpose of the SD-WAN underlay?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To provide the underlying WAN transport<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To store firewall logs<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To identify applications<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To manage administrators<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The underlay represents the underlying network transport used by an SD-WAN deployment. It can include Internet broadband, MPLS, LTE, or other WAN services. Logical overlays such as IPsec tunnels can operate over these transports and provide secure connectivity between sites. SD-WAN monitors available paths and applies traffic-steering policies to select appropriate members. Separating the underlay from the overlay allows organizations to use multiple transport technologies while maintaining a consistent logical network architecture. This design provides flexibility and allows WAN services to be changed or combined without necessarily redesigning the complete overlay network.<\/span><\/p>\n<h3><b>Question 156<\/b><\/h3>\n<p><b>Which Fortinet product is primarily responsible for centralized log analysis and reporting?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">FortiManager<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">FortiGate<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">FortiAnalyzer<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">FortiSwitch<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">FortiAnalyzer is primarily used for centralized log collection, analysis, reporting, and monitoring. FortiGate devices can send logs to FortiAnalyzer so administrators can investigate events from multiple locations through a central platform. In SD-WAN environments, these logs can assist with troubleshooting connectivity problems, reviewing traffic behavior, and analyzing events across branch devices. FortiManager serves a different primary purpose by providing centralized device and configuration management. Organizations can use both platforms together to achieve centralized administration and operational visibility across a large Fortinet deployment.<\/span><\/p>\n<h3><b>Question 157<\/b><\/h3>\n<p><b>Which SD-WAN option is most appropriate when an administrator wants to prefer a lower-cost path while still requiring acceptable SLA performance?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Best Quality<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Lowest Cost (SLA)<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Load Balance<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Manual<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Lowest Cost (SLA) is designed for scenarios where administrators want to consider member cost while still requiring paths to satisfy defined SLA conditions. This can be useful when an organization has WAN services with different operational costs. A lower-cost connection can be preferred as long as it provides acceptable latency, jitter, packet loss, or availability according to the configured requirements. If the lower-cost member fails the required SLA, another eligible path may be selected. This approach helps balance WAN expenses with application performance and service-quality requirements.<\/span><\/p>\n<h3><b>Question 158<\/b><\/h3>\n<p><b>Which FortiGate feature can use source and destination information to match traffic for SD-WAN steering?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">SD-WAN Rules<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">FortiAnalyzer Reports<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DHCP Relay<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Antivirus Profiles<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">SD-WAN rules can use traffic characteristics such as source and destination information when determining which policy should handle traffic. This allows administrators to create different steering behavior for different networks, servers, applications, or services. For example, traffic destined for a corporate data center can use a preferred WAN path while general Internet traffic uses another strategy. Additional matching criteria may include applications, services, and Internet Service Database information. Combining traffic matching with Performance SLA measurements allows FortiGate to make path-selection decisions based on both traffic identity and WAN conditions.<\/span><\/p>\n<h3><b>Question 159<\/b><\/h3>\n<p><b>What can FortiGate do when an SD-WAN member fails the Performance SLA required by a rule?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It can select another eligible member<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It permanently deletes the member<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It disables every firewall policy<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It removes all routing information<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">When an SD-WAN member fails the Performance SLA requirements associated with a rule, FortiGate can consider another eligible member for the affected traffic. SLA failure can result from excessive latency, jitter, packet loss, or loss of reachability depending on the configured health check. This behavior provides dynamic traffic steering and helps prevent applications from continuing to use a degraded path when suitable alternatives exist. The actual outcome depends on the SD-WAN strategy, rule configuration, SLA thresholds, and availability of other members. It does not automatically mean the physical interface is permanently disabled.<\/span><\/p>\n<h3><b>Question 160<\/b><\/h3>\n<p><b>Which statement best describes the role of an SD-WAN rule?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It stores FortiAnalyzer reports<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It defines how matching traffic should be steered across SD-WAN members<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It assigns IP addresses to users<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It replaces all security policies<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">An SD-WAN rule defines how matching traffic should be steered across available SD-WAN members. Administrators can use different matching criteria and select an appropriate path-selection strategy for each traffic class. Performance SLA results can influence whether a member is considered suitable for the rule. This allows different applications, destinations, or services to receive different WAN treatment. SD-WAN rules do not replace firewall policies or DHCP services; instead, they work within the broader FortiGate routing and security architecture. Proper rule design is essential for achieving predictable traffic steering and WAN resilience.<\/span><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full Fortinet NSE6_SDW_AD-7.6 Exam Dumps and Practice Test Dumps. &nbsp; Question 141 Which SD-WAN feature allows traffic to be classified according to the application being used? Static Routing Application Identification DHCP Relay ARP Inspection Correct Answer: 2 Explanation Application identification allows FortiGate to recognize application traffic and use that information in SD-WAN policies. This [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/17078"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=17078"}],"version-history":[{"count":1,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/17078\/revisions"}],"predecessor-version":[{"id":17079,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/17078\/revisions\/17079"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=17078"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=17078"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=17078"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}