Study Online FCP_FGT_AD-7.4 Exam Dumps to Pass

Category:

Comments:

Post Date:


FCP_FGT_AD-7.4 dumps questions can help you identify areas where you need to focus your studies. As you answer questions, you will be able to see which topics you are comfortable with and which ones you need to spend more time studying. Fortinet FCP_FGT_AD-7.4 dumps questions provide realistic practice for the certification exam. FCP_FGT_AD-7.4 dumps are designed to simulate the actual exam environment, and they will give you a chance to practice answering questions under time pressure. Study free Fortinet FCP_FGT_AD-7.4 online dumps below.

Page 1 of 8

1. On FortiGate, which type of logs record information about traffic directly to and from the FortiGate management IP addresses?

2. What is the limitation of using a URL list and application control on the same firewall policy, in NGFW policy-based mode?

A. It limits the scanning of application traffic to the browser-based technology category only.

B. It limits the scanning of application traffic to the DNS protocol only.

C. It limits the scanning of application traffic to use parent signatures only.

D. It limits the scanning of application traffic to the application category only.

3. Refer to exhibit.

An administrator configured the web filtering profile shown in the exhibit to block access to all social networking sites except Twitter. However, when users try to access twitter.com, they are redirected to a FortiGuard web filtering block page.





Based on the exhibit, which configuration change can the administrator make to allow Twitter while blocking all other social networking sites?

4. Which engine handles application control traffic on the next-generation firewall (NGFW) FortiGate?

A. Intrusion prevention system engine

B. Detection engine

C. Flow engine

D. Antivirus engine

5. Refer to the exhibits.

Exhibit A.





Exhibit B.





An administrator creates a new address object on the root FortiGate (Local-FortiGate) in the security fabric. After synchronization, this object is not available on the downstream FortiGate (ISFW).

What must the administrator do to synchronize the address object?

6. An administrator is running the following sniffer command: diagnose sniffer packet any "host 10.0.2.10" 3

What information will be included in the sniffer output? (Choose three.)

7. Which two configuration settings are synchronized when FortiGate devices are in an active-active HA cluster? (Choose two.)

8. Refer to the exhibit.





The exhibit shows the FortiGuard Category Based Filter section of a corporate web filter profile.

An administrator must block access to download.com, which belongs to the Freeware and Software Downloads category. The administrator must also allow other websites in the same category.

What are two solutions for satisfying the requirement? (Choose two.)

9. An administrator has configured two-factor authentication to strengthen SSL VPN access.

Which additional best practice can an administrator implement?

10. Refer to the exhibits.

Exhibit A shows system performance output.





Exhibit B shows a FortiGate configured with the default configuration of high memory usage thresholds.





Based on the system performance output, which two results are correct? (Choose two.)


 

TAGS:

Subscribe
Notify of
guest
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments

Related

Posts