[Jul-2021] Dumps Brief Outline Of The NSE5_FCT-6.2 Exam - Prep4pass
NSE5_FCT-6.2 Training & Certification Get Latest NSE 5 Network Security Analyst
NEW QUESTION 14
An administrator installs FortiClient on Windows Server.
What is the default behavior of real-time protection control?
- A. Real-time protection must update AV signature database
- B. Real-time protection sends malicious files to FortiSandbox when the file is not detected locally
- C. Real-time protection is disabled
- D. Real-time protection must update the signature database from FortiSandbox
Answer: C
NEW QUESTION 15
An administrator is required to maintain a software inventory on the endpoints. without showing the feature on the FortiClient dashboard What must the administrator do to achieve this requirement?
- A. The administrator must click the hide icon on the vulnerability scan tab
- B. The administrator must not select the vulnerability scan feature in the deployment package.
- C. The administrator must use default endpoint profile
- D. The administrator must select the vulnerability scan feature in the deployment package, but disable the feature on the endpoint profile
Answer: D
NEW QUESTION 16
Refer to the exhibit.
Based on the FortiClient logs shown in the exhibit which application is blocked by the application firewall?
- A. Internet Explorer
- B. Firefox
- C. Facebook
- D. Twitter
Answer: B
NEW QUESTION 17
Which statement about FortiClient comprehensive endpoint protection is true?
- A. It helps to safeguard systems from data loss.
- B. lt helps to safeguard systems from advanced security threats, such as malware.
- C. It helps to safeguard systems from DDoS.
- D. It helps to safeguard systems from email spam
Answer: B
NEW QUESTION 18
Refer to the exhibit.
Based on the CLI output from FortiGate. which statement is true?
- A. FortiGate is configured with local user group
- B. FortiGate is configured to pull user groups from FortiClient EMS
- C. FortiGate is configured to pull user groups from FortiAuthenticator
- D. FortiGate is configured to pull user groups from AD Server.
Answer: B
NEW QUESTION 19
Refer to the exhibit.
- A. An administrator has restored the modified XML configuration file to FortiClient and sees the error shown in the exhibit
- B. The administrator must save the file as FortiClient-config conf.
- C. The administrator must resolve the XML syntax error. The administrator must use a password to decrypt the file The administrator must change the file size
- D. Based on the XML settings shown in the exhibit, what must the administrator do to resolve the issue with the XML configuration file?
Answer: A
NEW QUESTION 20
Which two third-party tools can an administrator use to deploy FortiClient? (Choose two )
- A. MSI Editor
- B. Microsoft SCCM
- C. Microsoft Active Directory GPO
- D. Microsoft Windows Installer
Answer: B,C
NEW QUESTION 21
What action does FortiClient anti-exploit detection take when it detects exploits?
- A. Deletes the compromised application process
- B. Blocks memory allocation to the compromised application process
- C. Patches the compromised application process
- D. Terminates the compromised application process
Answer: D
NEW QUESTION 22
Refer to the exhibit.
Based on the Security Fabric automation settings, what action will be taken on compromised endpoints?
- A. Endpoints will be quarantined through FortiSwitch
- B. Endpoints will be banned on FortiGate
- C. An email notification will be sent for compromised endpoints
- D. Endpoints will be quarantined through EMS
Answer: D
NEW QUESTION 23
Which network component sends a notification after identifying a connected endpoint in the quarantine automation process?
- A. FortiAnalyzer
- B. FortiClient EMS
- C. FortiClient
- D. FortiGate
Answer: C
NEW QUESTION 24
Which two VPN types can a FortiClient endpoint user inmate from the Windows command prompt? (Choose two)
- A. IPSec
- B. L2TP
- C. SSL VPN
- D. PPTP
Answer: A,C
NEW QUESTION 25
Refer to the exhibits.

Based on the FortiGate Security Fabric settings shown in the exhibits, what must an administrator do on the EMS server to successfully quarantine an endpoint. when it is detected as a compromised host (loC)?
- A. The administrator must enable FQDN on EMS.
- B. The administrator must enable SSH access to EMS.
- C. The administrator must enable remote HTTPS access to EMS.
- D. The administrator must authorize FortiGate on FortiAnalyzer.
Answer: C
NEW QUESTION 26
......
Certification Training for NSE5_FCT-6.2 Exam Dumps Test Engine: https://www.prep4pass.com/NSE5_FCT-6.2_exam-braindumps.html
