NSE7_EFW-7.0 Exam Question 11

Examine the following traffic log; then answer the question below.
date-20xx-02-01 time=19:52:01 devname=master device_id="xxxxxxx" log_id=0100020007 type=event subtype=system pri critical vd=root service=kemel status=failure msg="NAT port is exhausted." What does the log mean?
  • NSE7_EFW-7.0 Exam Question 12

    Examine the following partial output from a sniffer command; then answer the question below.

    What is the meaning of the packets dropped counter at the end of the sniffer?
  • NSE7_EFW-7.0 Exam Question 13

    Exhibits:


    Refer to the exhibits, which contain the network topology and BGP configuration for a hub.
    An administrator is trying to configure ADVPN with a hub-spoke VPN setup using iBGP. All the VPNs are up and connected to the hub. The hub is receiving route information from both spokes over iBGP; however, the spokes are not receiving route information from each other.
    What change must the administrator make to the hub BGP configuration so that the routes learned by one spoke are forwarded to the other spokes?
  • NSE7_EFW-7.0 Exam Question 14

    Refer to the exhibit, which contains the debug output of diagnose dvm device list.

    Which two statements about the output shown in the exhibit are correct? (Choose two.)
  • NSE7_EFW-7.0 Exam Question 15

    Examine the IPsec configuration shown in the exhibit; then answer the question below.

    An administrator wants to monitor the VPN by enabling the IKE real time debug using these commands:
    diagnose vpn ike log-filter src-addr4 10.0.10.1
    diagnose debug application ike -1
    diagnose debug enable
    The VPN is currently up, there is no traffic crossing the tunnel and DPD packets are being interchanged between both IPsec gateways. However, the IKE real time debug does NOT show any output. Why isn't there any output?