ExamGecko
Home / Fortinet / FCP_FGT_AD-7.4 / List of questions
Ask Question

Fortinet FCP_FGT_AD-7.4 Practice Test - Questions Answers, Page 6

List of questions

Question 51

Report Export Collapse

Refer to the exhibit showing a debug flow output.

Fortinet FCP_FGT_AD-7.4 image Question 51 126270 11122024010310000000

What two conclusions can you make from the debug flow output? (Choose two.)

The debug flow is for ICMP traffic.

The debug flow is for ICMP traffic.

A firewall policy allowed the connection.

A firewall policy allowed the connection.

A new traffic session was created.

A new traffic session was created.

The default route is required to receive a reply.

The default route is required to receive a reply.

Suggested answer: A, C
Explanation:

A - The debug flow is for ICMP traffic.

B . A firewall policy allowed the connection.

C . A new traffic session was created.

D . The default route is required to receive a reply.

The debug flow is for ICMP traffic.

The output shows 'proto=1,' which indicates that the protocol is ICMP (Internet Control Message Protocol).

A new traffic session was created.

The message 'allocate a new session-00003dd5' confirms that a new session was created for this traffic.

asked 12/11/2024
Craig Reid
40 questions

Question 52

Report Export Collapse

Which two statements are correct when FortiGate enters conserve mode? (Choose two.)

Become a Premium Member for full access
  Unlock Premium Member

Question 53

Report Export Collapse

Refer to the exhibit.

Fortinet FCP_FGT_AD-7.4 image Question 53 126272 11122024010310000000

The administrator configured SD-WAN rules and set the FortiGate traffic log page to display SD-WAN-specific columns: SD-WAN Quality and SD-WAN Rule Name.

FortiGate allows the traffic according to policy ID 1. This is the policy that allows SD-WAN traffic.

Despite these settings the traffic logs do not show the name of the SD-WAN rule used to steer those traffic flows.

What can be the reason?

Become a Premium Member for full access
  Unlock Premium Member

Question 54

Report Export Collapse

FortiGuard categories can be overridden and defined in different categories. To create a web rating override for the example.com home page the override must be configured using a specific syntax.

Which two syntaxes are correct to configure a web rating override for the home page? (Choose two.)

Become a Premium Member for full access
  Unlock Premium Member

Question 55

Report Export Collapse

An administrator has configured the following settings:

Fortinet FCP_FGT_AD-7.4 image Question 55 126274 11122024010310000000

What are the two results of this configuration? (Choose two.)

Become a Premium Member for full access
  Unlock Premium Member

Question 56

Report Export Collapse

Which two statements explain antivirus scanning modes? (Choose two.)

Become a Premium Member for full access
  Unlock Premium Member

Question 57

Report Export Collapse

Refer to the exhibits, which show the firewall policy and the security profile for Facebook.

Fortinet FCP_FGT_AD-7.4 image Question 57 126276 11122024010310000000

Fortinet FCP_FGT_AD-7.4 image Question 57 126276 11122024010310000000

Users are given access to the Facebook web application. They can play video content hosted on Facebook but they are unable to leave reactions on videos or other types of posts.

Which part of the configuration must you change to resolve the issue?

Become a Premium Member for full access
  Unlock Premium Member

Question 58

Report Export Collapse

Which engine handles application control traffic on the next-generation firewall (NGFW) FortiGate?

Become a Premium Member for full access
  Unlock Premium Member

Question 59

Report Export Collapse

A FortiGate administrator is required to reduce the attack surface on the SSL VPN portal.

Which SSL timer can you use to mitigate a denial of service (DoS) attack?

Become a Premium Member for full access
  Unlock Premium Member

Question 60

Report Export Collapse

A FortiGate firewall policy is configured with active authentication however, the user cannot authenticate when accessing a website.

Which protocol must FortiGate allow even though the user cannot authenticate?

Become a Premium Member for full access
  Unlock Premium Member
Total 88 questions
Go to page: of 9
Search

Related questions