Pre-Summer Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Free and Premium Fortinet FCP_FSA_AD-5.0 Dumps Questions Answers

FCP - FortiSandbox 5.0 Administrator Questions and Answers

Question 1

You determine that there are a large number of samples on FortiSandbox that are obsolete and no longer needed for future analysis. Which CLI tool must you use to remediate this issue? (Choose one answer)

Options:

A.

log-purge

B.

factory-reset

C.

cleandb

D.

fsck-storage

Buy Now
Question 2

You notice a recent file downloaded by some end stations is exhibiting malware behavior, however, on the sandbox the file is rated clean. After further investigation you determine that only end stations using the Opera browser are being affected. What must you do to prevent these infections? (Choose one answer)

Options:

A.

Enable the STIX/TAXII Integration setting on FortiSandbox.

B.

Configure a custom VM to use the same browser as the exploited end stations.

C.

Modify the scan profile to include the malware file type.

D.

Change the job queue priority to process web-based files first.

Question 3

A FortiSandbox HA cluster is configured with the MTA adapter. What does the primary node do when it receives MTA jobs? (Choose one answer)

Options:

A.

It distributes the MTA jobs to secondary members.

B.

It distributes the MTA jobs to itself or to worker nodes.

C.

It assigns the MTA jobs to itself ز

D.

It assigns the MTA jobs only to worker members.

Question 4

How can you limit an administrator ' s access to scan jobs on FortiSandbox based on the system that submitted the scan request? (Choose one answer)

Options:

A.

By configuring device groups to assign to users

B.

By configuring access in the log server configuration settings

C.

By configuring netshare groups to define access

D.

By configuring administrator profiles that define job access

Question 5

You must increase the scanning capacity of a FortiSandbox device by increasing the number of clones, but the FortiSandbox local clone limit is already at maximum. Which two actions can you take to expand the scanning capacity of the unit? (Choose two answers)

Options:

A.

Deploy remote WindowsCloudVM and MACOSX clones

B.

Reorganize the scan priority list

C.

Add custom VMs

D.

Add VM licenses to FortiSandbox

Question 6

An organization has an existing FortiGate provisioned as a data center firewall (DCFW) that submits inbound files to FortiSandbox for inline scanning. As a result of a network redesign, traffic between the FortiSandbox and the DCFW now passes through an intermediate firewall. Inline scanning is no longer working. While examining the configuration of the intermediate firewall you notice that it is configured to allow traffic on ports TCP/3389, UDP/53, and TCP/443. What must you change for the integration to work? (Choose one answer)

Options:

A.

FortiGate must be able to access FortiSandbox on TCP/4443.

B.

FortiGate must be able to access FortiSandbox on TCP/8890.

C.

FortiGate must be able to access FortiSandbox on UDP/8888.

D.

FortiGate must be able to access FortiSandbox on UDP/1344.

Question 7

Refer to the exhibits.

You are unable to download guest VMs on a new FortiSandbox VM. What is the reason for this? (Choose one answer)

Options:

A.

FortiSandbox is using a private DNS server.

B.

There is no internet connectivity on port1.

C.

There is no internet connectivity on port3.

D.

FortiSandbox does not have the necessary licenses.

Question 8

A FortiSandbox VM has been deployed and has been functioning correctly for several months. Suddenly, the system begins rejecting file submissions with an error message indicating a licensing problem. How can you determine, using the CLI, if the license is still valid? (Choose one answer)

Options:

A.

vm-status

B.

hc-setting -1

C.

vm-license -1

D.

status

Question 9

Refer to the exhibit.

Which command must you use to configure the FortiSandbox device as the primary node? (Choose one answer)

Options:

A.

hc-settings -si iport1 -a10.25.1.30

B.

hc-settings -si iport1 -a10.25.1.40

C.

hc-settings -si iport1 -a10.25.1.254

D.

hc-settings -si iport1 -a10.25.1.50

Question 10

Which stage of the Cyber Kill Chain does FortiSandbox and FortiClient EMS integration help to block? (Choose one answer)

Options:

A.

Delivery

B.

Weaponization

C.

Reconnaissance

D.

Command and control

Question 11

You are asked to create some custom VMs to better represent your security environment. In which two FortiSandbox deployments is this supported? (Choose two answers)

Options:

A.

Private cloud

B.

Azure non-nested mode

C.

Device-based

D.

FortiSandbox Cloud

Question 12

Which two products integrated with FortiSandbox work to protect against the lateral movement stage of the Cyber Kill Chain? (Choose two answers)

Options:

A.

FortiMail

B.

FortiDeceptor

C.

FortiADC

D.

FortiGate