Black Friday Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70special

Fortinet FCP_FCT_AD-7.2 FCP-FortiClient EMS 7.2 Administrator Exam Practice Test

FCP-FortiClient EMS 7.2 Administrator Questions and Answers

Testing Engine

  • Product Type: Testing Engine
$37.5  $124.99

PDF Study Guide

  • Product Type: PDF Study Guide
$33  $109.99
Question 1

FortiClient EMS endpoint policies

Refer to the exhibit, which shows multiple endpoint policies on FortiClient EMS. Which policy is applied to the endpoint in the AD group trainingAD

Options:

A.

The Training policy

B.

Both the Sales and Training policies because their priority is higher than the Default policy

C.

The Default policy because it has the highest priority

D.

The sales policy

Question 2

An administrator configures ZTNA configuration on the FortiGate. Which statement is true about the firewall policy?

Options:

A.

It redirects the client request to the access proxy.

B.

It uses the access proxy.

C.

It defines ZTNA server.

D.

It only uses ZTNA tags to control access for endpoints.

Question 3

Which two statements are true about ZTNA? {Choose two.)

Options:

A.

ZTNA manages access for remote users only.

B.

ZTNA provides role-based access.

C.

ZTNA provides a security posture check.

D.

ZTNA manages access through the client only.

Question 4

Which two statements about ZTNA destinations are true? (Choose two.)

Options:

A.

FottiClient ZTNA destinations use an existing VPN tunnel to create a secure connection.

B.

FortiClient ZTNA destinations provides access through TCP forwarding.

C.

FortiClient ZTNA destinations do not support a wildcard FQDN.

D.

FortiClient ZTNA destination encryption is disabled by default.

E.

FortiCIient ZTNA destination authentication is enabled by default.

Question 5

What is the function of the quick scan option on FortiClient?

Options:

A.

It scans programs and drivers that are currently running, for threats

B.

It performs a full system scan including all files, executable files. DLLs, and drivers for throats.

C.

It allows users to select a specific file folder on their local hard disk drive (HDD), to scan for threats.

D.

It scans executable files. DLLs, and drivers that are currently running, for threats.

Question 6

Refer to the exhibit, which shows the endpoint summary information on FortiClient EMS.

What two conclusions can you make based on the Remote-Client status shown above? (Choose two.)

Options:

A.

The endpoint is classified as at risk.

B.

The endpoint has been assigned the Default endpoint policy.

C.

The endpoint is configured to support FortiSandbox.

D.

The endpoint is currently off-net.

Question 7

In a ForliSandbox integration, what does the remediation option do?

Options:

A.

Deny access to a tile when it sees no results

B.

Alert and notify only

C.

Exclude specified files

D.

Wait for FortiSandbox results before allowing files

Question 8

Which statement about the FortiClient enterprise management server is true?

Options:

A.

It receives the configuration information of endpoints from ForuGate.

B.

It provides centralized management of multiple endpoints running FortiClient software.

C.

It enforces compliance on the endpoints using tags

D.

It receives the CA certificate from FortiGate to validate client certrficates.

Question 9

Which two are benefits of using multi-tenancy mode on FortiClient EMS? (Choose two.)

Options:

A.

Separate host servers manage each site.

B.

Licenses are shared among sites

C.

The fabric connector must use an IP address to connect to FortiClient EMS.

D.

It provides granular access and segmentation.

Question 10

Refer to the exhibit.

Based on the settings shown in the exhibit which statement about FortiClient behavior is true?

Options:

A.

FortiClient quarantines infected files and reviews later, after scanning them.

B.

FortiClient blocks and deletes infected files after scanning them.

C.

FortiClient scans infected files when the user copies files to the Resources folder

D.

FortiClient copies infected files to the Resources folder without scanning them.

Question 11

Refer to the exhibit, which shows FortiClient EMS deployment, profiles.

When an administrator creates a deployment profile on FortiClient EMS. which statement about the deployment profile is true?

Options:

A.

Deployment-2 will upgrade FortiClient on both the AD group and workgroup.

B.

Deployment-1 will install FortiClient on new AO group endpoints.

C.

Deployment-2 will install FortiClient on both the AD group and workgroup.

D.

Deployment-1 will upgrade FortiClient only on the workgroup.

Question 12

Refer to the exhibit.

Based on the settings shown in the exhibit, which action will FortiClient take when users try to access www facebook com?

Options:

A.

FortiClient will allow access to Facebook.

B.

FortiClient will block access to Facebook and its subdomains.

C.

FortiClient will monitor only the user's web access to the Facebook website

D.

FortiClient will prompt a warning message to want the user before they can access the Facebook website

Question 13

ZTNA Network Topology

Refer to the exhibits, which show a network topology diagram of ZTNA proxy access and the ZTNA rule configuration.

An administrator runs the diagnose endpoint record list CLI command on FortiGate to check Remote-Client endpoint information, however Remote-Client is not showing up in the endpoint record list.

What is the cause of this issue?

Options:

A.

Remote-Client has not initiated a connection to the ZTNA access proxy.

B.

Remote-Client provided an empty client certificate to connect to the ZTNA access proxy.

C.

Remote-Client provided an invalid certificate to connect to the ZTNA access proxy.

D.

Remote-Client failed the client certificate authentication.

Question 14

An administrator needs to connect FortiClient EMS as a fabric connector to FortiGate What is the prerequisite to get FortiClient EMS lo connect to FortiGate successfully?

Options:

A.

Import and verify the FortiClient EMS tool CA certificate on FortiGate.

B.

Revoke and update the FortiClient client certificate on EMS.

C.

Import and verify the FortiClient client certificate on FortiGate.

D.

Revoke and update the FortiClient EMS root CA.

Question 15

Which component or device shares ZTNA tag information through Security Fabric integration?

Options:

A.

FortiGate

B.

FortiGate Access Proxy

C.

FortiClient

Question 16

Refer to the exhibit.

Based on the Security Fabric automation settings, what action will be taken on compromised endpoints?

Options:

A.

Endpoints will be quarantined through EMS

B.

Endpoints will be banned on FortiGate

C.

An email notification will be sent for compromised endpoints

D.

Endpoints will be quarantined through FortiSwitch