Free FCP-FGT-AD-7-4 Fortinet FCP-FGT-AD-7-4 Practice Test Question

Loading demo links...

Showing 4–6 of 9 questions

Question 4 (Topic 1)

Refer to the exhibit. A network administrator is troubleshooting an IPsec tunnel between two FortiGate devices. The administrator has determined that phase 1 failed to come up. The administrator has also re-entered the pre-shared key on both FortiGate devices to make sure they match. Based on the phase 1 configuration and the diagram shown in the exhibit, which two configuration changes can the administrator make to bring phase 1 up? (Choose two.)

Select an option, then click Submit answer.

  • On HQ-FortiGate, disable Diffie-Helman group 2.
  • On Remote-FortiGate, set port2 as Interface.
  • On both FortiGate devices, set Dead Peer Detection to On Demand.
  • On HQ-FortiGate, set IKE mode to Main (ID protection).
Question 5 (Topic 1)

Which three methods are used by the collector agent for AD polling? (Choose three.)

Select an option, then click Submit answer.

  • WinSecLog
  • WMI
  • NetAPI
  • FSSO REST API
  • FortiGate polling
Question 6 (Topic 1)

Which engine handles application control traffic on the next-generation firewall (NGFW) FortiGate?

Select an option, then click Submit answer.

  • Internet Service Database (ISDB) engine
  • Intrusion prevention system engine
  • Antivirus engine
  • Application control engine