Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet Exam NSE7_NST-7.2 Topic 4 Question 18 Discussion

Actual exam question for Fortinet's NSE7_NST-7.2 exam
Question #: 18
Topic #: 4
[All NSE7_NST-7.2 Questions]

Refer to the exhibit, which shows the output of diagnose sys session stat. Which statement about the output shown in the exhibit is correct?

Show Suggested Answer Hide Answer
Suggested Answer: C

Understanding protocol states:

proto_state=00: Indicates no traffic or a closed session.

proto_state=01: Typically indicates one-way ICMP traffic or a partially established TCP session.

proto_state=10: Indicates an established TCP session, where the session has completed the three-way handshake and both sides can send and receive data.

proto_state=11: Often indicates a fully established and active bidirectional session.

Explanation of correct answer:

proto_state=10 is the correct indication for an established TCP session as it signifies that the session is fully established and active.


Fortinet Network Security 7.2 Support Engineer Documentation

Fortinet Firewall Protocol State Documentation

Contribute your Thoughts:

Glory
27 days ago
Hmm, I'm leaning towards D as well. The other options just don't seem to align with the information in the exhibit.
upvoted 0 times
Hoa
17 days ago
I think D is the correct option.
upvoted 0 times
...
...
Ashanti
1 months ago
This question is a real head-scratcher. I'm gonna go with D and hope for the best. At least it's not asking about the meaning of life!
upvoted 0 times
Gaston
5 days ago
User 2: I'm going with D, there are two sessions that have not been removed in case of any out-of-order packets that arrive.
upvoted 0 times
...
Jimmie
18 days ago
User 1: I think it's C, there are 166 TCP sessions waiting to complete the three-way handshake.
upvoted 0 times
...
...
Brice
2 months ago
I'm not sure about the other options, but D definitely seems to be the most accurate based on the information provided in the exhibit.
upvoted 0 times
Natalya
24 days ago
User 4: Let's go with D then, it seems to be the best choice.
upvoted 0 times
...
Luisa
1 months ago
User 3: I'm not sure, but I'll go with D too.
upvoted 0 times
...
Truman
1 months ago
User 2: Yeah, I agree. It seems to match the output shown.
upvoted 0 times
...
Junita
2 months ago
User 1: I think option D is correct.
upvoted 0 times
...
...
Aracelis
2 months ago
Option D sounds like the correct answer. The output shows that there are two sessions that have not been removed in case of any out-of-order packets that arrive.
upvoted 0 times
Cyril
1 months ago
Yes, it looks like those two sessions are being kept for out-of-order packets.
upvoted 0 times
...
Kerrie
2 months ago
I agree, option D seems to be the correct answer.
upvoted 0 times
...
...
Precious
2 months ago
I'm not sure, but I think it might be B.
upvoted 0 times
...
Carin
2 months ago
I disagree, I believe the answer is D.
upvoted 0 times
...
Virgina
3 months ago
I think the correct answer is C.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77