Black Friday Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Free and Premium Fortinet FCP_FCT_AD-7.2 Dumps Questions Answers

FCP-FortiClient EMS 7.2 Administrator Questions and Answers

Question 1

Refer to the exhibit.

Based on the Security Fabric automation settings, what action will be taken on compromised endpoints?

Options:

A.

Endpoints will be quarantined through EMS

B.

Endpoints will be banned on FortiGate

C.

An email notification will be sent for compromised endpoints

D.

Endpoints will be quarantined through FortiSwitch

Buy Now
Question 2

An administrator must add an authentication server on FortiClient EMS in a different security zone that cannot allow a direct connection.

Which solution can provide secure access between FortiClient EMS and the Active Directory server?

Options:

A.

Configure and deploy a FortiGate device between FortiClient EMS and the Active Directory server.

B.

Configure Active Directory and install FortiClient EMS on the same VM.

C.

Configure a slave FortiClient EMS on a virtual machine.

D.

Configure an Active Directory connector between FortiClient EMS and the Active Directory server.

Question 3

Which component or device defines ZTNA lag information in the Security Fabric integration?

Options:

A.

FortiClient

B.

FortiGate

C.

FortiClient EMS

D.

FortiGate Access Proxy

Question 4

Refer to the exhibit.

Based on the CLI output from FortiGate. which statement is true?

Options:

A.

FortiGate is configured to pull user groups from FortiClient EMS

B.

FortiGate is configured with local user group

C.

FortiGate is configured to pull user groups from FortiAuthenticator

D.

FortiGate is configured to pull user groups from AD Server.

Question 5

An administrator wants to simplify remote access without asking users to provide user credentials Which access control method provides this solution?

Options:

A.

ZTNA full mode

B.

SSL VPN

C.

L2TP

D.

ZTNA IP/MAC littering mode

Question 6

A FortiClient EMS administrator has enabled the compliance rule for the sales department Which Fortinet device will enforce compliance with dynamic access control?

Options:

A.

FortiClient

B.

FortiClient EMS

C.

FortiGate

D.

FortiAnalyzer

Question 7

Which security fabric component sends a notification io quarantine an endpoint after IOC detection "n the automation process?

Options:

A.

FortiAnalyzer

B.

FortiGate

C.

FortiClient EMS

D.

FortiClient

Question 8

Refer to the exhibit.

Based on the settings shown in the exhibit, which two actions must the administrator take to make the endpoint compliant? (Choose two.)

Options:

A.

Enable the web filter profile.

B.

Run Calculator application on the endpoint.

C.

Integrate FortiSandbox tor infected file analysis

D.

Patch applications that have vulnerability rated as high or above.

Question 9

Which component or device shares device status information through ZTNA telemetry?

Options:

A.

FortiClient

B.

FortiGate

C.

FortiGate Access Proxy

D.

FortiClient EMS

Question 10

Exhibit.

Based on the FortiClient logs shown in the exhibit, which endpoint profile policy is currently applied lo the ForliClient endpoint from the EMS server?

Options:

A.

Fortinet-Training

B.

Default configuration policy c

C.

Compliance rules default

D.

Default

Question 11

Refer to the exhibit.

Based on the settings shown in the exhibit what action will FortiClient take when it detects that a user is trying to download an infected file?

Options:

A.

Blocks the infected files as it is downloading

B.

Quarantines the infected files and logs all access attempts

C.

Sends the infected file to FortiGuard for analysis

D.

Allows the infected file to download without scan

Question 12

An administrator installs FortiClient on Windows Server.

What is the default behavior of real-time protection control?

Options:

A.

Real-time protection must update AV signature database

B.

Real-time protection sends malicious files to FortiSandbox when the file is not detected locally

C.

Real-time protection is disabled

D.

Real-time protection must update the signature database from FortiSandbox

Question 13

Which two are benefits of using multi-tenancy mode on FortiClient EMS? (Choose two.)

Options:

A.

Separate host servers manage each site.

B.

Licenses are shared among sites

C.

The fabric connector must use an IP address to connect to FortiClient EMS.

D.

It provides granular access and segmentation.

Question 14

In a ForliSandbox integration, what does the remediation option do?

Options:

A.

Deny access to a tile when it sees no results

B.

Alert and notify only

C.

Exclude specified files

D.

Wait for FortiSandbox results before allowing files

Question 15

Which statement about the FortiClient enterprise management server is true?

Options:

A.

It receives the configuration information of endpoints from ForuGate.

B.

It provides centralized management of multiple endpoints running FortiClient software.

C.

It enforces compliance on the endpoints using tags

D.

It receives the CA certificate from FortiGate to validate client certrficates.

Question 16

An administrator has a requirement to add user authentication to the ZTNA access for remote or off-fabric users Which FortiGate feature is required m addition to ZTNA?

Options:

A.

FortiGate FSSO

B.

FortiGate certificates

C.

C. FortiGate explicit proxy

D.

FortiGate endpoint control