Download FCP-FortiGate 7.4 Administrator.FCP_FGT_AD-7.4.ExamTopics.2025-05-21.89q.vcex

Vendor: Fortinet
Exam Code: FCP_FGT_AD-7.4
Exam Name: FCP-FortiGate 7.4 Administrator
Date: May 21, 2025
File Size: 7 MB
Downloads: 15

How to open VCEX files?

Files with VCEX extension can be opened by ProfExam Simulator.

ProfExam Discount

Demo Questions

Question 1
Refer to the exhibit.
Which two statements are true about the routing entries in this database table? (Choose two.)
  1. All of the entries in the routing database table are installed in the FortiGate routing table.
  2. The port2 interface is marked as inactive.
  3. Both default routes have different administrative distances.
  4. The default route on port2 is marked as the standby route.
Correct answer: CD
Question 2
A network administrator wants to set up redundant IPsec VPN tunnels on FortiGate by using two IPsec VPN tunnels and static routes.
All traffic must be routed through the primary tunnel when both tunnels are up. The secondary tunnel must be used only if the primary tunnel goes down. In addition, FortiGate should be able to detect a dead tunnel to speed up tunnel failover.
Which two key configuration changes must the administrator make on FortiGate to meet the requirements? (Choose two.)
  1. Enable Dead Peer Detection.
  2. Enable Auto-negotiate and Autokey Keep Alive on the phase 2 configuration of both tunnels.
  3. Configure a lower distance on the static route for the primary tunnel, and a higher distance on the static route for the secondary tunnel.
  4. Configure a higher distance on the static route for the primary tunnel, and a lower distance on the static route for the secondary tunnel.
Correct answer: AC
Question 3
Refer to the exhibits.
The exhibits show the application sensor configuration and the Excessive-Bandwidth and Apple filter details.
Based on the configuration, what will happen to Apple FaceTime if there are only a few calls originating or incoming?
  1. Apple FaceTime will be allowed, based on the Video/Audio category configuration.
  2. Apple FaceTime will be allowed, based on the Apple filter configuration.
  3. Apple FaceTime will be allowed only if the Apple filter in Application and Filter Overrides is set to Allow.
  4. Apple FaceTime will be blocked, based on the Excessive-Bandwidth filter configuration.
Correct answer: D
Question 4
An employee needs to connect to the office through a high-latency internet connection.
Which SSL VPN setting should the administrator adjust to prevent SSL VPN negotiation failure?
  1. SSL VPN idle-timeout
  2. SSL VPN login-timeout
  3. SSL VPN dtls-hello-timeout
  4. SSL VPN session-ttl
Correct answer: C
Question 5
When FortiGate performs SSL/SSH full inspection, you can decide how it should react when it detects an invalid certificate.
Which three actions are valid actions that FortiGate can perform when it detects an invalid certificate? (Choose three.)
  1. Allow & Warning
  2. Trust & Allow
  3. Allow
  4. Block & Warning
  5. Block
Correct answer: BCE
Question 6
Refer to the exhibit, which shows the IPS sensor configuration.
If traffic matches this IPS sensor, which two actions is the sensor expected to take? (Choose two.)
  1. The sensor will gather a packet log for all matched traffic.
  2. The sensor will reset all connections that match these signatures.
  3. The sensor will allow attackers matching the Microsoft.Windows.iSCSI.Target.DoS signature.
  4. The sensor will block all attacks aimed at Windows servers.
Correct answer: CD
Question 7
Which statement is a characteristic of automation stitches?
  1. They can be run only on devices in the Security Fabric.
  2. They can be created only on downstream devices in the fabric.
  3. They can have one or more triggers.
  4. They can run multiple actions at the same time.
Correct answer: D
Question 8
What is the primary FortiGate election process when the HA override setting is disabled?
  1. Connected monitored ports > Priority > System uptime > FortiGate serial number
  2. Connected monitored ports > System uptime > Priority > FortiGate serial number
  3. Connected monitored ports > Priority > HA uptime > FortiGate serial number
  4. Connected monitored ports > HA uptime > Priority > FortiGate serial number
Correct answer: D
Question 9
Which two settings are required for SSL VPN to function between two FortiGate devices? (Choose two.)
  1. The client FortiGate requires the SSL VPN tunnel interface type to connect SSL VPN.
  2. The server FortiGate requires a CA certificate to verify the client FortiGate certificate.
  3. The client FortiGate requires a client certificate signed by the CA on the server FortiGate.
  4. The client FortiGate requires a manually added route to remote subnets.
Correct answer: AB
Question 10
Refer to the exhibit.
Which statement about this firewall policy list is true?
  1. The Implicit group can include more than one deny firewall policy.
  2. The firewall policies are listed by ID sequence view.
  3. The firewall policies are listed by ingress and egress interfaces pairing view.
  4. LAN to WAN, WAN to LAN, and Implicit are sequence grouping view lists.
Correct answer: D
Question 11
Refer to the exhibit, which shows an SD-WAN zone configuration on the FortiGate GUI.
Based on the exhibit, which statement is true?
  1. The underlay zone contains port1 and port2.
  2. The d-wan zone contains no member.
  3. The d-wan zone cannot be deleted.
  4. The virtual-wan-link zone contains no member.
Correct answer: B
HOW TO OPEN VCE FILES

Use VCE Exam Simulator to open VCE files
Avanaset

HOW TO OPEN VCEX AND EXAM FILES

Use ProfExam Simulator to open VCEX and EXAM files
ProfExam Screen

ProfExam
ProfExam at a 20% markdown

You have the opportunity to purchase ProfExam at a 20% reduced price

Get Now!