Fortinet FCP_FGT_AD-7.4 Practice Test - Questions Answers, Page 9
List of questions
Related questions
Refer to the exhibits.
An administrator creates a new address object on the root FortiGate (Local-FortiGate) in the security fabric. After synchronization, this object is not available on the downstream FortiGate (ISFW).
What must the administrator do to synchronize the address object?
Change the csf setting on Local-FortiGate (root) to sec fabric-object-unification default.
Change the csf setting on both devices to sec downscream-access enable.
Change the csf setting on ISFW (downstream) to sec auchorizacion-requesc-cype certificace.
Change the csf setting on ISFW (downstream) to sec configuration-sync local.
Refer to the exhibits.
The SSL VPN connection fails when a user attempts to connect to it.
What should the user do to successfully connect to the SSL VPN?
Change the SSL VPN portal to the tunnel.
Change the idle timeout.
Change the server IP address.
Change the SSL VPN port on the client.
Which statement is correct regarding the use of application control for inspecting web applications?
Application control can identify child and parent applications, and perform different actions on them
Application control signatures are included in Fortinet Antivirus engine
Application control does not display a replacement message for a blocked web application
Application control does not require SSL Inspection to Identity web applications
Which two statements are true about the FGCP protocol? (Choose two.)
FGCP is not used when FortiGate is in transparent mode
FGCP elects the primary FortiGate device
FGCP is used to discover FortiGate devices in different HA groups
FGCP runs only over the heartbeat links
Refer to the exhibit which contains a RADIUS server configuration.
An administrator added a configuration for a new RADIUS server. While configuring, the administrator selected the Include in every user group option.
What is the impact of using the Include in every user group option in a RADIUS configuration?
This option places the RADIUS server, and all users who can authenticate against that server, into every FortiGate user group
This option places all users into even/ RADIUS user group, including groups that are used for the LDAP server on FortiGate
This option places all FortiGate users and groups required to authenticate into the RADIUS server, which, in this case is FortiAuthenticator
This option places the RADIUS server, and all users who can authenticate against that server, into every RADIUS group
Which statement about the deployment of the Security Fabric in a multi-VDOM environment is true?
Downstream devices can connect to the upstream device from any of their VDOMs
Each VDOM in the environment can be part of a different Security Fabric
VDOMs without ports with connected devices are not displayed in the topology
Security rating reports can be run individually for each configured VDOM
Question