Weekend Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70special

Fortinet FCP_FCT_AD-7.4 Fortinet NSE 6 - FortiClient EMS 7.4 Administrator Exam Practice Test

Fortinet NSE 6 - FortiClient EMS 7.4 Administrator Questions and Answers

Testing Engine

  • Product Type: Testing Engine
$37.5  $124.99

PDF Study Guide

  • Product Type: PDF Study Guide
$33  $109.99
Question 1

An administrator has a requirement to add user authentication to the ZTNA access for remote or off-fabric users Which FortiGate feature is required m addition to ZTNA?

Options:

A.

FortiGate FSSO

B.

FortiGate certificates

C.

C. FortiGate explicit proxy

D.

FortiGate endpoint control

Question 2

What action does FortiClient anti-exploit detection take when it detects exploits?

Options:

A.

Deletes the compromised application process

B.

Patches the compromised application process

C.

Blocks memory allocation to the compromised application process

D.

Terminates the compromised application process

Question 3

Which statement about FortiClient comprehensive endpoint protection is true?

Options:

A.

It helps to safeguard systems from email spam

B.

It helps to safeguard systems from data loss.

C.

It helps to safeguard systems from DDoS.

D.

lt helps to safeguard systems from advanced security threats, such as malware.

Question 4

Why does FortiGate need the root CA certificate of FortiCient EMS?

Options:

A.

To revoke FortiClient client certificates

B.

To sign FortiClient CSR requests

C.

To update FortiClient client certificates

D.

To trust certificates issued by FortiClient EMS

Question 5

Exhibit.

Based on the logs shown in the exhibit, why did FortiClient EMS tail to install FortiClient on the endpoint?

Options:

A.

The FortiClient antivirus service is not running.

B.

The Windows installer service is not running.

C.

The remote registry service is not running.

D.

The task scheduler service is not running.

Question 6

Which two are benefits of using multi-tenancy mode on FortiClient EMS? (Choose two.)

Options:

A.

Separate host servers manage each site.

B.

Licenses are shared among sites

C.

The fabric connector must use an IP address to connect to FortiClient EMS.

D.

It provides granular access and segmentation.

Question 7

Refer to the exhibit, which shows the Zero Trust Tagging Rule Set configuration.

Which two statements about the rule set are true? (Choose two.)

Options:

A.

The endpoint must satisfy that only Windows 10 is running.

B.

The endpoint must satisfy that only AV software is installed and running.

C.

The endpoint must satisfy that antivirus is installed and running and Windows 10 is running.

D.

The endpoint must satisfy that only Windows Server 2012 R2 is running.

Question 8

Refer to the exhibit.

Which behavior should you expect when FortiClient with an invalid certificate is connecting to FortiClient EMS? (Choose one answer)

Options:

A.

FortiClient is blocked from connecting to FortiClient EMS.

B.

FortiClient requires an additional password to connect to FortiClient EMS.

C.

FortiClient displays a warning message to the end user.

D.

FortiClient EMS pushes a valid certificate to FortiClient.

Question 9

Refer to the exhibit.

Based on the FortiClient logs shown in the exhibit which application is blocked by the application firewall?

Options:

A.

Twitter

B.

Facebook

C.

Internet Explorer

D.

Firefox

Question 10

Which three types of antivirus scans are available on FortiClient? (Choose three )

Options:

A.

Proxy scan

B.

Full scan

C.

Custom scan

D.

Flow scan

E.

Quick scan

Question 11

An administrator has lost web access to the FortiClient EMS console, and the web page to access to the console is timing out.

How can the administrator gather information to investigate the issue? (Choose one answer)

Options:

A.

Use the CLI diagnostic tool on the EMS server.

B.

Download the webserver logs from the PostgreSQL server.

C.

Use the diagnostic logs option from the FortiClient EMS GUI.

D.

Download the log generator from the support site and run it on the EMS server.

Question 12

Refer to the exhibit.

Based on the settings shown in the exhibit which statement about FortiClient behavior is true?

Options:

A.

FortiClient quarantines infected files and reviews later, after scanning them.

B.

FortiClient blocks and deletes infected files after scanning them.

C.

FortiClient scans infected files when the user copies files to the Resources folder

D.

FortiClient copies infected files to the Resources folder without scanning them.

Question 13

Refer to the exhibit.

Based on the settings shown in the exhibit what action will FortiClient take when it detects that a user is trying to download an infected file?

Options:

A.

Blocks the infected files as it is downloading

B.

Quarantines the infected files and logs all access attempts

C.

Sends the infected file to FortiGuard for analysis

D.

Allows the infected file to download without scan

Question 14

Refer to the exhibit.

Based on the FortiClient tog details shown in the exhibit, which two statements ace true? (Choose two.)

Options:

A.

The filename Is Unconfirmed 899290.crdovnload.

B.

The file status is Quarantined

C.

The filename is sent to FortiSandbox for further inspection.

D.

The file location is \??\D:\Users\.

Question 15

Which two statements apply to FortiClient forensics analysis? (Choose two answers)

Options:

A.

FortiClient sends an alert notification when malicious activity is triggered.

B.

The administrator must request analysis for the desired endpoint.

C.

The endpoint is quarantined until forensics is completed.

D.

Forensics analysis features must be enabled in the system settings profile.

Question 16

Which three features does FortiClient endpoint security include? (Choose three.)

Options:

A.

DLP

B.

Vulnerability management

C.

L2TP

D.

lPsec

E.

Real-lime protection

Question 17

Which component or device defines ZTNA lag information in the Security Fabric integration?

Options:

A.

FortiClient

B.

FortiGate

C.

FortiClient EMS

D.

FortiGate Access Proxy

Question 18

Refer to the exhibit.

Why is the user not able to access bbc.com? (Choose one answer)

Options:

A.

The URL is blocked by the web filter endpoint profile.

B.

The endpoint cannot resolve the URL FQDN.

C.

FortiGuard servers are not reachable from the endpoint.

D.

The application firewall is blocking Google Chrome.

Question 19

An administrator must deploy FortiClient for an organization that has BYOD and remote users.

What can the administrator use to deploy FortiClient? (Choose one answer)

Options:

A.

FortiClient zero-touch provisioning

B.

Microsoft System Center Configuration Manager (SCCM)

C.

Microsoft Intune

D.

Group Policy Object (GPO)

Question 20

Which component or device shares device status information through ZTNA telemetry?

Options:

A.

FortiClient

B.

FortiGate

C.

FortiGate Access Proxy

D.

FortiClient EMS