View Full Cisco 350-701 Exam Dumps and Practice Test Dumps. Question 101 Which Cisco security feature can restrict traffic entering a switch port based on the source IP address and associated DHCP binding information? IP Source Guard SPAN EtherChannel HSRP Correct Answer: 1 Explanation IP Source Guard helps prevent source IP address spoofing on […]
View Full Cisco 350-701 Exam Dumps and Practice Test Dumps. Question 81 Which IPsec mode encrypts the original IP packet and adds a new IP header for routing across an untrusted network? Tunnel mode Transport mode Broadcast mode Access mode Correct Answer: 1 Explanation IPsec tunnel mode encapsulates the entire original IP packet, including […]
View Full Cisco 350-701 Exam Dumps and Practice Test Dumps. Question 61 Which IPsec component provides confidentiality by encrypting the payload of an IP packet? ESP AH IKE ARP Correct Answer: 1 Explanation Encapsulating Security Payload, or ESP, provides confidentiality through encryption and can also provide integrity, authentication, and anti-replay protection depending on its […]
View Full Cisco 350-701 Exam Dumps and Practice Test Dumps. Question 41 Which security technology allows an organization to inspect encrypted traffic so that security policies can be applied to otherwise hidden application activity? TLS inspection DHCP snooping Port security MAC learning Correct Answer: 1 Explanation TLS inspection allows a security device to decrypt […]
View Full Cisco 350-701 Exam Dumps and Practice Test Dumps. Question 21 Which Cisco security technology provides centralized identity-based policy enforcement for users and devices connecting to a network? Cisco Identity Services Engine Cisco Secure Firewall Cisco Umbrella Cisco Secure Endpoint Correct Answer: 1 Explanation Cisco Identity Services Engine, or ISE, provides centralized identity […]
View Full Cisco 350-701 Exam Dumps and Practice Test Dumps. Question 1 Which security architecture assumes that users and devices should not automatically be trusted simply because they are located inside an organization’s network? Defense in depth Zero trust Network address translation Perimeter-only security Correct Answer: 2 Explanation Zero trust is a security architecture […]
View Full Fortinet FCP_FCT_AD-7.4 Exam Dumps and Practice Test Dumps. Question 381. How many multitenancy sites can FortiClient EMS support? 10 sites 20 sites 25 sites Up to 50 sites Correct Answer: 4. Up to 50 sites Explanation: FortiClient EMS multitenancy allows an organization to divide endpoint management into separate sites. Fortinet documents support for […]
View Full Fortinet FCP_FCT_AD-7.4 Exam Dumps and Practice Test Dumps. Question 361. What is the default number of unsuccessful administrator login attempts before FortiClient EMS locks the administrator account temporarily? One attempt Five attempts Three attempts Ten attempts Correct Answer: 3. Three attempts Explanation: FortiClient EMS includes an administrator lockout mechanism designed to reduce the […]
View Full Fortinet FCP_FCT_AD-7.4 Exam Dumps and Practice Test Dumps. Question 341. What does the Out-Of-Sync indicator in the FortiClient EMS Endpoints quick-status bar represent? Endpoints whose licenses have expired Endpoints whose currently applied profile is out of synchronization with the expected EMS configuration Endpoints that have never installed FortiClient Endpoints that are currently quarantined […]
View Full Fortinet FCP_FCT_AD-7.4 Exam Dumps and Practice Test Dumps. Question 321. Which mobile device management platforms are supported by the FortiClient EMS 7.4 MDM Integration page? Cisco ISE, Aruba ClearPass, and FortiNAC MobileIron only VMware Workspace ONE, Microsoft Intune, and Jamf Microsoft SCCM only Correct Answer: 3. VMware Workspace ONE, Microsoft Intune, and Jamf […]
View Full Fortinet FCP_FCT_AD-7.4 Exam Dumps and Practice Test Dumps. Question 301. In a FortiClient EMS Vulnerability Scan profile, what does selecting Patch Level = High mean? Patch only low-severity vulnerabilities Automatically patch high-severity and critical vulnerabilities Patch only informational findings Disable automatic patching Correct Answer: 2. Automatically patch high-severity and critical vulnerabilities Explanation: The […]
View Full Fortinet FCP_FCT_AD-7.4 Exam Dumps and Practice Test Dumps. Question 281. An endpoint qualifies for both a user-based endpoint policy and a group-based endpoint policy in FortiClient EMS. Which policy takes precedence? The group-based policy always takes precedence The user-based policy takes precedence EMS merges both policies The policy created most recently takes precedence […]
View Full Fortinet FCP_FCT_AD-7.4 Exam Dumps and Practice Test Dumps. Question 261. Which FortiClient EMS feature forces users to authenticate their identity when registering FortiClient to EMS? Installer Signing Enforce User Verification FortiGuard Anycast Application Firewall Correct Answer: 2. Enforce User Verification Explanation: The Enforce User Verification setting is designed to ensure that endpoint registration […]
View Full Fortinet FCP_FCT_AD-7.4 Exam Dumps and Practice Test Dumps. Question 241. What is the purpose of a security posture tagging rule in FortiClient EMS? To create FortiClient installer packages To configure the EMS database To assign permanent IP addresses to endpoints To evaluate endpoint conditions and dynamically apply a tag when the configured rule […]
View Full Fortinet FCP_FCT_AD-7.4 Exam Dumps and Practice Test Dumps. Question 221. Starting with EMS 7.4.5, what capability is available for protecting the EMS database without relying on an external cron job? Automatic database replication to every endpoint Automatic export to FortiAnalyzer only Scheduled EMS database backups configured directly in EMS Continuous database backup to […]