Weekend Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmas50

Fortinet FCP_FCT_AD-7.2 - FCP-FortiClient EMS 7.2 Administrator

Page: 1 / 2
Total 55 questions

Which two statements are true about the ZTNA rule? (Choose two.)

A.

It applies security profiles to protect traffic

B.

It applies SNAT to protect traffic.

C.

It defines the access proxy.

D.

It enforces access control.

Why does FortiGate need the root CA certificate of FortiCient EMS?

A.

To revoke FortiClient client certificates

B.

To sign FortiClient CSR requests

C.

To update FortiClient client certificates

D.

To trust certificates issued by FortiClient EMS

Which two statements about ZTNA destinations are true? (Choose two.)

A.

FottiClient ZTNA destinations use an existing VPN tunnel to create a secure connection.

B.

FortiClient ZTNA destinations provides access through TCP forwarding.

C.

FortiClient ZTNA destinations do not support a wildcard FQDN.

D.

FortiClient ZTNA destination encryption is disabled by default.

E.

FortiCIient ZTNA destination authentication is enabled by default.

A FortiClient EMS administrator has enabled the compliance rule for the sales department Which Fortinet device will enforce compliance with dynamic access control?

A.

FortiClient

B.

FortiClient EMS

C.

FortiGate

D.

FortiAnalyzer

Refer to the exhibit, which shows the output of the ZTNA traffic log on FortiGate.

What can you conclude from the log message?

A.

The remote user connection does not match the local-in policy.

B.

The remote user connection does not match the ZTNA rule configuration.

C.

The remote user connection does not match the ZTNA server configuration.

D.

The remote user connection does not match the ZTNA firewall policy.

What does FortiClient do as a fabric agent? (Choose two.)

A.

Provides IOC verdicts

B.

Creates dynamic policies

C.

Provides application inventory

D.

Automates Responses

An administrator has a requirement to add user authentication to the ZTNA access for remote or off-fabric users Which FortiGate feature is required m addition to ZTNA?

A.

FortiGate FSSO

B.

FortiGate certificates

C.

C. FortiGate explicit proxy

D.

FortiGate endpoint control

Which two statements are true about ZTNA? {Choose two.)

A.

ZTNA manages access for remote users only.

B.

ZTNA provides role-based access.

C.

ZTNA provides a security posture check.

D.

ZTNA manages access through the client only.

An administrator wants to simplify remote access without asking users to provide user credentials Which access control method provides this solution?

A.

ZTNA full mode

B.

SSL VPN

C.

L2TP

D.

ZTNA IP/MAC littering mode

Refer to the exhibits.

Which show the Zero Trust Tag Monitor and the FortiClient GUI status.

Remote-Client is tagged as Remote-Users on the FortiClient EMS Zero Trust Tag Monitor.

What must an administrator do to show the tag on the FortiClient GUI?

A.

Update tagging rule logic to enable tag visibility

B.

B. Change the FortiClient system settings to enable tag visibility

C.

Change the endpoint control setting to enable tag visibility

D.

Change the user identity settings to enable tag visibility