FCP_FGT_AD-7.6 Dumps

FCP_FGT_AD-7.6 Free Practice Test

Fortinet FCP_FGT_AD-7.6: FCP - FortiGate 7.6 Administrator

QUESTION 1

Refer to the exhibits.
FCP_FGT_AD-7.6 dumps exhibit
Based on the current HA status, an administrator updates theoverrideandpriorityparameters on HQ-NGFW-1 and HQ-NGFW-2 as shown in the exhibit.
What would be the expected outcome in the HA cluster?

Correct Answer: B
With override enabled on HQ-NGFW-2 and its higher priority (110 vs. 90), HQ-NGFW-2 will become the primary device, preempting HQ-NGFW-1 despite the current primary status.

QUESTION 2

An administrator notices that some users are unable to establish SSL VPN connections, while others can connect without any issues.
What should the administrator check first?

Correct Answer: B
If user traffic is not matching the appropriate firewall policy that permits SSL VPN, users will be unable to establish connections, making this the first aspect to verify.

QUESTION 3

Refer to the exhibit.
FCP_FGT_AD-7.6 dumps exhibit
As an administrator you have created an IPS profile, but it is not performing as expected. While testing you got the output as shown in the exhibit.
What could be the possible reason of the diagnose output shown in the exhibit?

Correct Answer: A
The output shows the IPS engine count as 0, indicating no active IPS engines are running. This typically means no firewall policy is referencing the IPS security profile, so the IPS profile is not being applied or triggered.

QUESTION 4

An administrator suspects that the Collector Agent is not forwarding login events to FortiGate. What is the most effective troubleshooting step?

Correct Answer: D
The Collector Agent communicates with FortiGate over TCP port 8000. Ensuring this port is open and reachable is essential for forwarding login events.

QUESTION 5

Refer to the exhibit.
FCP_FGT_AD-7.6 dumps exhibit
An administrator has created a new firewall address to use as the destination for a static route.
Why is the administrator not able to select the new address in theDestinationfield of the new static route?

Correct Answer: D
To use an FQDN-based address object as a destination in a static route, the "Routing configuration" option must be enabled in the firewall address settings. Without this, the address cannot be selected for routing.