Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet NSE5_FSW_AD-7.6 Exam - Topic 2 Question 2 Discussion

Actual exam question for Fortinet's NSE5_FSW_AD-7.6 exam
Question #: 2
Topic #: 2
[All NSE5_FSW_AD-7.6 Questions]

(Full question statement start from here)

Refer to the exhibit.

You run the command diagnose switch-controller switch-info loopguard access-1 and see that theMAC-Movecolumn displays a value of0forport1.

What does this indicate? (Choose one answer)

Show Suggested Answer Hide Answer
Suggested Answer: C

In FortiSwitchOS 7.6,Loop Guardis a Layer 2 loop detection mechanism primarily designed to protect access ports from unintended network loops. In itsoriginal implementation, Loop Guard only detected loops on thenative VLAN, which limited its effectiveness in environments using multiple tagged VLANs. To address this limitation, Fortinet enhanced Loop Guard by introducing theMAC move detection feature, as documented in the FortiSwitchOS 7.6 Administrator Guide.

TheMAC move optioninstructs the FortiSwitch to monitor for repeated MAC address flapping events across ports or VLANs. Such MAC movement is a strong indicator of a Layer 2 loop. However, this enhanced detection mechanism isdisabled by defaultand must be explicitly enabled by configuring aMAC move threshold greater than zero.

According to the FortiSwitchOS 7.6 Administrator Guide (page 164), enabling MAC move allows Loop Guard to detect loops beyond the native VLAN. Furthermore, the guide explicitly states (page 166) thata MAC-Move value of 0 indicates that the MAC move feature is not enabled. This means the switch is not monitoring MAC address movement as part of its loop detection logic, even though Loop Guard itself may still be enabled on the port.

Therefore, a MAC-Move value of 0 does not indicate that Loop Guard is disabled or inactive, nor does it imply VLAN-wide port shutdown behavior. It strictly confirms thatMAC move detection has not been enabled, makingOption Cthe correct and fully verified answer based on FortiSwitchOS 7.6 documentation.


Contribute your Thoughts:

0/2000 characters
Vallie
3 days ago
I agree, it's definitely not D.
upvoted 0 times
...
Cyril
9 days ago
Wait, are we sure about that? Seems odd.
upvoted 0 times
...
Carline
14 days ago
Definitely C, MAC move feature isn't enabled.
upvoted 0 times
...
Lavonne
19 days ago
I think it means port1 isn't being monitored.
upvoted 0 times
...
Geoffrey
24 days ago
Loop guard is disabled on port1.
upvoted 0 times
...
Twila
29 days ago
My gut says it’s related to loop guard being disabled, but I’m a bit confused about the specifics of how it interacts with VLANs.
upvoted 0 times
...
Oren
1 month ago
I feel like I’ve seen something similar before, but I can’t recall if a value of 0 definitely means the MAC move feature is off.
upvoted 0 times
...
Hermila
1 month ago
I remember a practice question where we discussed loop guard and its monitoring capabilities. Could it be that port1 is just not being monitored?
upvoted 0 times
...
Millie
1 month ago
I think if the MAC-Move column shows 0, it might mean that loop guard isn't active on that port, but I'm not entirely sure.
upvoted 0 times
...

Save Cancel