Free FCP_FGT_AD-7.4 Exam Braindumps (page: 9)

Page 8 of 23

An administrator must enable a DHCP server on one of the directly connected networks on FortiGate. However, the administrator is unable to complete the process on the GUI to enable the service on the interface.
In this scenario, what prevents the administrator from enabling DHCP service?

  1. The role of the interface prevents setting a DHCP server.
  2. The DHCP server setting is available only on the CLI.
  3. Another interface is configured as the only DHCP server on FortiGate.
  4. The FortiGate model does not support the DHCP server.

Answer(s): A

Explanation:

FortiGate interfaces can be configured in different roles, such as WAN or LAN. If an interface is set as a "WAN" role, you cannot configure it to act as a DHCP server through the GUI. The interface role must be set to "LAN" or "Undefined" to allow DHCP server configuration.


Reference:

FortiOS 7.4.1 Administration Guide: DHCP Server Configuration



Refer to the exhibit.



Review the intrusion prevention system (IPS) profile signature settings shown in the exhibit.

What do you conclude when adding the FTP.Login.Failed signature to the IPS sensor profile?

  1. Traffic matching the signature will be allowed and logged.
  2. The signature setting uses a custom rating threshold.
  3. The signature setting includes a group of other signatures.
  4. Traffic matching the signature will be silently dropped and logged.

Answer(s): A

Explanation:

The exhibit shows that the "FTP.Login.Failed" IPS signature is set with the action "Pass" and packet logging enabled. This means that any traffic matching this signature will be allowed through the FortiGate, and the traffic details will be logged for monitoring and analysis purposes.


Reference:

FortiOS 7.4.1 Administration Guide: IPS Signature Actions



The HTTP inspection process in web filtering follows a specific order when multiple features are enabled in the web filter profile.
Which order must FortiGate use when the web filter profile has features such as safe search enabled?

  1. FortiGuard category filter and rating filter
  2. Static domain filter, SSL inspection filter, and external connectors filters
  3. DNS-based web filter and proxy-based web filter
  4. Static URL filter, FortiGuard category filter, and advanced filters

Answer(s): D

Explanation:

FortiGate applies web filters in the following order: Static URL filter, FortiGuard category filter, Web content filter, Web script filter, and Antivirus scanning.



FortiGate is integrated with FortiAnalyzer and FortiManager.
When a firewall policy is created, which attribute is added to the policy to improve functionality and to support recording logs to FortiAnalyzer or FortiManager?

  1. Log ID
  2. Policy ID
  3. Sequence ID
  4. Universally Unique Identifier

Answer(s): D

Explanation:

When a firewall policy is created in FortiGate integrated with FortiAnalyzer and FortiManager, a Universally Unique Identifier (UUID) is added to the policy to support logging and management.






Post your Comments and Discuss Fortinet FCP_FGT_AD-7.4 exam with other Community members:

FCP_FGT_AD-7.4 Discussions & Posts