Free FCSS – Enterprise Firewall 7.4 Administrator Exam FCSS_EFW_AD-7.4 Exam Practice Test
FCSS_EFW_AD-7.4 Exam Features
In Just $59 You can Access
- All Official Question Types
- Interactive Web-Based Practice Test Software
- No Installation or 3rd Party Software Required
- Customize your practice sessions (Free Demo)
- 24/7 Customer Support
Total Questions: 57
-
An administrator received a FortiAnalyzer alert that a 1 ТВ disk filled up in a day. Upon investigation, they found thousands of unusual DNS log requests, such as JHCMQK.website.com, with no answers. They later discovered that DNS exfiltration was occurring through both UDP and TLS.How can the administrator prevent this data theft technique?
Answer: D Next Question -
An administrator must enable direct communication between multiple spokes in a company's network. Each spoke has more than one internet connection.The requirement is for the spokes to connect directly without passing through the hub, and for the links to automatically switch to the best available connection.How can this automatic detection and optimal link utilization between spokes be achieved?
Answer: B Next Question -
An administrator applied a block-all IPS profile for client and server targets to secure the server, but the database team reported the application stopped working immediately after.How can an administrator apply IPS in a way that ensures it does not disrupt existing applications in the network?
Answer: A Next Question -
An administrator needs to install an IPS profile without triggering false positives that can impact applications and cause problems with the user's normal traffic flow.Which action can the administrator take to prevent false positives on IPS analysis?
Answer: A Next Question -
An administrator configured the FortiGate devices in an enterprise network to join the FortinetSecurity Fabric. The administrator has a list of IP addresses that must be blocked by the data center firewall. This list is updated daily.How can the administrator automate a firewall policy with the daily updated list?
Answer: D Next Question -
A user reports that their computer was infected with malware after accessing a secured HTTPS website. However, when the administrator checks the FortiGate logs, they do not see that the website was detected as insecure despite having an SSL certificate and correct profiles applied on the policy.How can an administrator ensure that FortiGate can analyze encrypted HTTPS traffic on a website?
Answer: D Next Question -
An administrator is setting up an ADVPN configuration and wants to ensure that peer IDs are not exposed during VPN establishment.Which protocol can the administrator use to enhance security?
Answer: A Next Question -
What does the command set forward-domain <domain_ID> in a transparent VDOM interface do?
Answer: B Next Question -
Which two statements about IKEv2 are true if an administrator decides to implement IKEv2 in the VPN topology? (Choose two.)
Answer: A, ,D Next Question -
A company's users on an IPsec VPN between FortiGate A and B have experienced intermittent issues since implementing VXLAN. The administrator suspects that packets exceeding the 1500-byte default MTU are causing the problems.In which situation would adjusting the interface’s maximum MTU value help resolve issues caused by protocols that add extra headers to IP packets?
Answer: C Next Question
Total Questions: 57
