Fortinet NSE5_FCT-7.0 Exam Practice Questions (P. 4)
- Full Access (45 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #16
Refer to the exhibit.

Based on the FortiClient logs shown in the exhibit, which software application is blocked by the application firewall?

Based on the FortiClient logs shown in the exhibit, which software application is blocked by the application firewall?
send
light_mode
delete
Question #17
When site categories are disabled in FortiClient webfilter and antivirus (malicious websites), which feature can be used to protect the endpoint from malicious web access?
- AWeb exclusion listMost Voted
- BFortiSandbox URL list
- CReal-time protection list
- DBlock malicious websites on antivirus
Correct Answer:
A
A

When site categories are disabled in FortiClient's web filter, protection against malicious websites doesn't rely on the regular category-based blocking. Instead, the Web Exclusion List becomes the primary method to manage security threats by specifically excluding certain sites from access, thus safeguarding the endpoint. This focused approach allows for precise control over web access, directly addressing potential security risks in a tailored manner.
send
light_mode
delete
Question #18
Refer to the exhibits, which show a network topology diagram of ZTNA proxy access and the ZTNA rule configuration.
An administrator runs the diagnose endpoint record list CLI command on FortiGate to check Remote-Client endpoint information, however Remote-Client is not showing up in the endpoint record list.
What is the cause of this issue?

An administrator runs the diagnose endpoint record list CLI command on FortiGate to check Remote-Client endpoint information, however Remote-Client is not showing up in the endpoint record list.
What is the cause of this issue?


- ARemote-Client failed the client certificate authentication.Most Voted
- BRemote-Client provided an empty client certificate to connect to the ZTNA access proxy.
- CRemote-Client has not initiated a connection to the ZTNA access proxy.
- DRemote-Client provided an invalid certificate to connect to the ZTNA access proxy.
Correct Answer:
C
C
send
light_mode
delete
Question #19
Refer to the exhibit, which shows the endpoint summary information on FortiClient EMS.

What two conclusions can you make based on the Remote-Client status shown above? (Choose two.)

What two conclusions can you make based on the Remote-Client status shown above? (Choose two.)
- AThe endpoint is classified as at risk.
- BThe endpoint has been assigned the Default endpoint policy.Most Voted
- CThe endpoint is configured to support FortiSandbox.
- DThe endpoint is currently off-net.
Correct Answer:
B
B
send
light_mode
delete
Question #20
Refer to the exhibit, which shows the Zero Trust Tagging Rule Set configuration.

Which two statements about the rule set are true? (Choose two.)

Which two statements about the rule set are true? (Choose two.)
- AThe endpoint must satisfy that only Windows 10 is running.
- BThe endpoint must satisfy that only AV software is installed and running.
- CThe endpoint must satisfy that antivirus is installed and running and Windows 10 is running.Most Voted
- DThe endpoint must satisfy that only Windows Server 2012 R2 is running.Most Voted
Correct Answer:
BC
BC
send
light_mode
delete
All Pages