Month End Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70percent

Fortinet FCP_FCT_AD-7.4 Fortinet NSE 6 - FortiClient EMS 7.4 Administrator Exam Practice Test

Demo: 20 questions
Total 68 questions

Fortinet NSE 6 - FortiClient EMS 7.4 Administrator Questions and Answers

Question 1

An administrator configures ZTNA configuration on the FortiGate. Which statement is true about the firewall policy?

Options:

A.

It redirects the client request to the access proxy.

B.

It uses the access proxy.

C.

It defines ZTNA server.

D.

It only uses ZTNA tags to control access for endpoints.

Question 2

When multitenancy is enabled on FortiClient EMS, which administrator role can provide access to the global site only? (Choose one answer)

Options:

A.

Tenant administrator

B.

Settings administrator

C.

Standard administrator

D.

Global administrator

Question 3

Refer to the exhibits.

Which shows the configuration of endpoint policies.

Based on the configuration, what will happen when someone logs in with the user account student on an endpoint in the trainingAD domain?

Options:

A.

FortiClient EMS will assign the Sales policy

B.

B. FortiClient EMS will assign the Training policy

C.

FortiClient EMS will assign the Default policy

D.

FortiClient EMS will assign the Training policy for on-fabric endpoints and the Sales policy for the off-fabric endpoint

Question 4

Which two statements about FortiClient EMS integration with Active Directory (AD) are true? (Choose two answers)

Options:

A.

FortiClient EMS has full read-write access on the AD server.

B.

FortiClient installations on domain endpoints can deployed from FortiClient EMS.

C.

Endpoint profiles can be assigned to endpoints based on domain groups.

D.

Imported AD endpoints cannot be directly deleted on FortiClient EMS

Question 5

Which two statements about ZTNA destinations are true? (Choose two.)

Options:

A.

FottiClient ZTNA destinations use an existing VPN tunnel to create a secure connection.

B.

FortiClient ZTNA destinations provides access through TCP forwarding.

C.

FortiClient ZTNA destinations do not support a wildcard FQDN.

D.

FortiClient ZTNA destination encryption is disabled by default.

E.

FortiCIient ZTNA destination authentication is enabled by default.

Question 6

An administrator has a requirement to add user authentication to the ZTNA access for remote or off-fabric users Which FortiGate feature is required m addition to ZTNA?

Options:

A.

FortiGate FSSO

B.

FortiGate certificates

C.

C. FortiGate explicit proxy

D.

FortiGate endpoint control

Question 7

Refer to the exhibit, which shows the output of the ZTNA traffic log on FortiGate.

What can you conclude from the log message?

Options:

A.

The remote user connection does not match the local-in policy.

B.

The remote user connection does not match the ZTNA rule configuration.

C.

The remote user connection does not match the ZTNA server configuration.

D.

The remote user connection does not match the ZTNA firewall policy.

Question 8

Refer to the exhibit.

Based on the settings shown in the exhibit what action will FortiClient take when it detects that a user is trying to download an infected file?

Options:

A.

Blocks the infected files as it is downloading

B.

Quarantines the infected files and logs all access attempts

C.

Sends the infected file to FortiGuard for analysis

D.

Allows the infected file to download without scan

Question 9

Refer to the exhibit, which shows FortiClient EMS deployment, profiles.

When an administrator creates a deployment profile on FortiClient EMS. which statement about the deployment profile is true?

Options:

A.

Deployment-2 will upgrade FortiClient on both the AD group and workgroup.

B.

Deployment-1 will install FortiClient on new AO group endpoints.

C.

Deployment-2 will install FortiClient on both the AD group and workgroup.

D.

Deployment-1 will upgrade FortiClient only on the workgroup.

Question 10

Refer to the exhibit.

Based on the CLI output from FortiGate. which statement is true?

Options:

A.

FortiGate is configured to pull user groups from FortiClient EMS

B.

FortiGate is configured with local user group

C.

FortiGate is configured to pull user groups from FortiAuthenticator

D.

FortiGate is configured to pull user groups from AD Server.

Question 11

Which component or device shares ZTNA tag information through Security Fabric integration?

Options:

A.

FortiGate

B.

FortiGate Access Proxy

C.

FortiClient

Question 12

A FortiClient EMS administrator has enabled the compliance rule for the sales department Which Fortinet device will enforce compliance with dynamic access control?

Options:

A.

FortiClient

B.

FortiClient EMS

C.

FortiGate

D.

FortiAnalyzer

Question 13

Which Fortinet solution can you integrate FortiClient with to use the single sign-on mobility agent (SSOMA) feature? (Choose one answer)

Options:

A.

FortiAuthenticator

B.

FortiSASE

C.

FortiPAM

D.

FortiNAC

Question 14

Refer to the exhibit, which shows the Zero Trust Tagging Rule Set configuration.

Which two statements about the rule set are true? (Choose two.)

Options:

A.

The endpoint must satisfy that only Windows 10 is running.

B.

The endpoint must satisfy that only AV software is installed and running.

C.

The endpoint must satisfy that antivirus is installed and running and Windows 10 is running.

D.

The endpoint must satisfy that only Windows Server 2012 R2 is running.

Question 15

Which component or device shares device status information through ZTNA telemetry?

Options:

A.

FortiClient

B.

FortiGate

C.

FortiGate Access Proxy

D.

FortiClient EMS

Question 16

What is the function of the quick scan option on FortiClient?

Options:

A.

It scans programs and drivers that are currently running, for threats

B.

It performs a full system scan including all files, executable files. DLLs, and drivers for throats.

C.

It allows users to select a specific file folder on their local hard disk drive (HDD), to scan for threats.

D.

It scans executable files. DLLs, and drivers that are currently running, for threats.

Question 17

An administrator must deploy FortiClient for an organization that has BYOD and remote users.

What can the administrator use to deploy FortiClient? (Choose one answer)

Options:

A.

FortiClient zero-touch provisioning

B.

Microsoft System Center Configuration Manager (SCCM)

C.

Microsoft Intune

D.

Group Policy Object (GPO)

Question 18

Which two statements are true about ZTNA? {Choose two.)

Options:

A.

ZTNA manages access for remote users only.

B.

ZTNA provides role-based access.

C.

ZTNA provides a security posture check.

D.

ZTNA manages access through the client only.

Question 19

Refer to the exhibits.

Which show the Zero Trust Tag Monitor and the FortiClient GUI status.

Remote-Client is tagged as Remote-Users on the FortiClient EMS Zero Trust Tag Monitor.

What must an administrator do to show the tag on the FortiClient GUI?

Options:

A.

Update tagging rule logic to enable tag visibility

B.

B. Change the FortiClient system settings to enable tag visibility

C.

Change the endpoint control setting to enable tag visibility

D.

Change the user identity settings to enable tag visibility

Question 20

Refer to the exhibit.

Based on the settings shown in the exhibit which statement about FortiClient behavior is true?

Options:

A.

FortiClient quarantines infected files and reviews later, after scanning them.

B.

FortiClient blocks and deletes infected files after scanning them.

C.

FortiClient scans infected files when the user copies files to the Resources folder

D.

FortiClient copies infected files to the Resources folder without scanning them.

Demo: 20 questions
Total 68 questions