New Year Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Free and Premium Fortinet FCP_FCT_AD-7.4 Dumps Questions Answers

Fortinet NSE 6 - FortiClient EMS 7.4 Administrator Questions and Answers

Question 1

Exhibit.

Based on the logs shown in the exhibit, why did FortiClient EMS tail to install FortiClient on the endpoint?

Options:

A.

The FortiClient antivirus service is not running.

B.

The Windows installer service is not running.

C.

The remote registry service is not running.

D.

The task scheduler service is not running.

Buy Now
Question 2

An administrator has a requirement to add user authentication to the ZTNA access for remote or off-fabric users Which FortiGate feature is required m addition to ZTNA?

Options:

A.

FortiGate FSSO

B.

FortiGate certificates

C.

C. FortiGate explicit proxy

D.

FortiGate endpoint control

Question 3

An administrator deploys a FortiClient installation through the Microsoft AD group policy After installation is complete all the custom configuration is missing.

What could have caused this problem?

Options:

A.

The FortiClient exe file is included in the distribution package

B.

The FortiClient MST file is missing from the distribution package

C.

FortiClient does not have permission to access the distribution package.

D.

The FortiClient package is not assigned to the group

Question 4

Which three types of antivirus scans are available on FortiClient? (Choose three )

Options:

A.

Proxy scan

B.

Full scan

C.

Custom scan

D.

Flow scan

E.

Quick scan

Question 5

ZTNA Network Topology

Refer to the exhibits, which show a network topology diagram of ZTNA proxy access and the ZTNA rule configuration.

An administrator runs the diagnose endpoint record list CLI command on FortiGate to check Remote-Client endpoint information, however Remote-Client is not showing up in the endpoint record list.

What is the cause of this issue?

Options:

A.

Remote-Client has not initiated a connection to the ZTNA access proxy.

B.

Remote-Client provided an empty client certificate to connect to the ZTNA access proxy.

C.

Remote-Client provided an invalid certificate to connect to the ZTNA access proxy.

D.

Remote-Client failed the client certificate authentication.

Question 6

Which component or device defines ZTNA lag information in the Security Fabric integration?

Options:

A.

FortiClient

B.

FortiGate

C.

FortiClient EMS

D.

FortiGate Access Proxy

Question 7

Which two statements about FortiClient EMS integration with Active Directory (AD) are true? (Choose two answers)

Options:

A.

FortiClient EMS has full read-write access on the AD server.

B.

FortiClient installations on domain endpoints can deployed from FortiClient EMS.

C.

Endpoint profiles can be assigned to endpoints based on domain groups.

D.

Imported AD endpoints cannot be directly deleted on FortiClient EMS

Question 8

Which two statements are true about ZTNA? {Choose two.)

Options:

A.

ZTNA manages access for remote users only.

B.

ZTNA provides role-based access.

C.

ZTNA provides a security posture check.

D.

ZTNA manages access through the client only.

Question 9

Refer to the exhibits.

Based on the FortiGate Security Fabric settings shown in the exhibits, what must an administrator do on the EMS server to successfully quarantine an endpoint. when it is detected as a compromised host (loC)?

Options:

A.

The administrator must enable remote HTTPS access to EMS.

B.

The administrator must enable FQDN on EMS.

C.

The administrator must authorize FortiGate on FortiAnalyzer.

D.

The administrator must enable SSH access to EMS.

Question 10

Refer to the exhibit.

Based on the settings shown in the exhibit, which action will FortiClient take when users try to access www facebook com?

Options:

A.

FortiClient will allow access to Facebook.

B.

FortiClient will block access to Facebook and its subdomains.

C.

FortiClient will monitor only the user's web access to the Facebook website

D.

FortiClient will prompt a warning message to want the user before they can access the Facebook website

Question 11

Which security fabric component sends a notification io quarantine an endpoint after IOC detection "n the automation process?

Options:

A.

FortiAnalyzer

B.

FortiGate

C.

FortiClient EMS

D.

FortiClient

Question 12

Refer to the exhibit.

Why is the user not able to access bbc.com? (Choose one answer)

Options:

A.

The URL is blocked by the web filter endpoint profile.

B.

The endpoint cannot resolve the URL FQDN.

C.

FortiGuard servers are not reachable from the endpoint.

D.

The application firewall is blocking Google Chrome.

Question 13

When site categories are disabled in FortiClient web filter, which feature can be used to protect the endpoint from malicious web access?

Options:

A.

Real-time protection list

B.

Block malicious websites on antivirus

C.

FortiSandbox URL list

D.

Web exclusion list

Question 14

Refer to the exhibit, which shows the output of the ZTNA traffic log on FortiGate.

What can you conclude from the log message?

Options:

A.

The remote user connection does not match the local-in policy.

B.

The remote user connection does not match the ZTNA rule configuration.

C.

The remote user connection does not match the ZTNA server configuration.

D.

The remote user connection does not match the ZTNA firewall policy.

Question 15

Refer to the exhibit.

An administrator has restored the modified XML configuration file to FortiClient and sees the error shown in the exhibit.

Based on the XML settings shown in the exhibit, what must the administrator do to resolve the issue with the XML configuration file?

Options:

A.

The administrator must resolve the XML syntax error.

B.

The administrator must use a password to decrypt the file

C.

The administrator must change the file size

D.

The administrator must save the file as FortiClient-config conf.

Question 16

Which two are benefits of using multi-tenancy mode on FortiClient EMS? (Choose two.)

Options:

A.

Separate host servers manage each site.

B.

Licenses are shared among sites

C.

The fabric connector must use an IP address to connect to FortiClient EMS.

D.

It provides granular access and segmentation.

Question 17

An administrator installs FortiClient EMS in the enterprise.

Which component is responsible for enforcing protection and checking security posture?

Options:

A.

FortiClient EMS tags

B.

FortiClient vulnerability scan

C.

FortiClient

D.

FortiClient EMS

Question 18

What action does FortiClient anti-exploit detection take when it detects exploits?

Options:

A.

Deletes the compromised application process

B.

Patches the compromised application process

C.

Blocks memory allocation to the compromised application process

D.

Terminates the compromised application process

Question 19

When multitenancy is enabled on FortiClient EMS, which administrator role can provide access to the global site only? (Choose one answer)

Options:

A.

Tenant administrator

B.

Settings administrator

C.

Standard administrator

D.

Global administrator

Question 20

What is the function of the quick scan option on FortiClient?

Options:

A.

It scans programs and drivers that are currently running, for threats

B.

It performs a full system scan including all files, executable files. DLLs, and drivers for throats.

C.

It allows users to select a specific file folder on their local hard disk drive (HDD), to scan for threats.

D.

It scans executable files. DLLs, and drivers that are currently running, for threats.