Free FCSS-EFW-AD-7-4 Fortinet FCSS-EFW-AD-7-4 Practice Test Question

Loading demo links...

Showing 1–3 of 6 questions

Question 1 (Topic 1)

An administrator is checking an enterprise network and sees a suspicious packet with the MAC address e0:23:ff:fc:00:86. What two conclusions can the administrator draw? (Choose two.)

Select an option, then click Submit answer.

  • The suspicious packet is related to a cluster that has VDOMs enabled.
  • The network includes FortiGate devices configured with the FGSP protocol.
  • The suspicious packet is related to a cluster with a group-id value lower than 255.
  • The suspicious packet corresponds to port 7 on a FortiGate device.
Question 2 (Topic 1)

A company's guest internet policy, operating in proxy mode, blocks access to Artificial Intelligence Technology sites using FortiGuard. However, a guest user accessed a page in this category using port 8443. Which configuration changes are required for FortiGate to analyze HTTPS traffic on nonstandard ports like 8443 when full SSL inspection is active in the guest policy?

Select an option, then click Submit answer.

  • Add a URL wildcard domain to the website CA certificate and use it in the SSL/SSH Inspection Profile.
  • In the Protocol Port Mapping section of the SSL/SSH Inspection Profile, enter 443, 8443 to analyze both standard (443) and non-standard (8443) HTTPS ports.
  • To analyze nonstandard ports in web filter profiles, use TLSv1.3 in the SSL/SSH Inspection Profile.
  • Administrators can block traffic on nonstandard ports by enabling the SNI check in the SSL/SSH Inspection Profile.
Question 3 (Topic 1)

Refer to the exhibits. The Administrators section of a root FortiGate device and the Security Fabric Settings section of a downstream FortiGate device are shown. When prompted to sign in with Security Fabric in the downstream FortiGate device, a user enters the AdminSSO credentials. What is the next status for the user?

Select an option, then click Submit answer.

  • The user is prompted to create an SSO administrator account for AdminSSO.
  • The user receives an authentication failure message.
  • The user accesses the downstream FortiGate with super_admin_readonly privileges.
  • The user accesses the downstream FortiGate with super_admin privileges.