Free FCP-FGT-AD-7-6 Fortinet FCP-FGT-AD-7-6 Practice Test Question

Loading demo links...

Showing 4–6 of 10 questions

Question 4 (Topic 1)

Refer to the exhibit. What would be the impact of these settings on the Server certificate SNI check configuration on FortiGate?

Select an option, then click Submit answer.

  • FortiGate will accept and use the CN in the server certificate for URL filtering if the SNI does not match the CN or SAN fields.
  • FortiGate will accept the connection with a warning if the SNI does not match the CN or SAN fields.
  • FortiGate will close the connection if the SNI does not match the CN or SAN fields.
  • FortiGate will close the connection if the SNI does not match the CN and SAN fields
Question 5 (Topic 1)

When configuring firewall policies which of the following is true regarding the policy ID?

Select an option, then click Submit answer.

  • It is mandatory to provide a policy ID while creating a firewall policy regardless of GUI or CLI.
  • A firewall policy ID identifies the order of policy execution in firewall policies.
  • You can create a policy in CLI with policy ID 0.
  • A policy ID cannot be edited once a policy is created.
Question 6 (Topic 1)

Which statement correctly describes NetAPI polling mode for the FSSO collector agent?

Select an option, then click Submit answer.

  • The collector agent uses a Windows API to query DCs for user logins.
  • NetAPI polling can increase bandwidth usage in large networks.
  • The NetSessionEnum function is used to track user logouts.
  • The collector agent must search Windows application event logs.