Fortinet FCSS_EFW_AD-7.4 FCSS – Enterprise Firewall 7.4 Administrator Online Training
Fortinet FCSS_EFW_AD-7.4 Online Training
The questions for FCSS_EFW_AD-7.4 were last updated at Feb 22,2025.
- Exam Code: FCSS_EFW_AD-7.4
- Exam Name: FCSS - Enterprise Firewall 7.4 Administrator
- Certification Provider: Fortinet
- Latest update: Feb 22,2025
An administrator has enabled HA session synchronization in a HA cluster with two members.
Which flag is added to a primary unit’s session to indicate that it has been synchronized to the secondary unit?
- A . redir.
- B . dirty.
- C . synced
- D . nds.
Which two tasks are automated using the Install Wizard on FortiManager? (Choose two.)
- A . Installing configuration changes to managed devices.
- B . Importing interface mappings from managed devices.
- C . Adding devices to FortiManager.
- D . Previewing pending configuration changes for managed devices.
Refer to the exhibit, which contains a session table entry.
Which statement about FortiGate inspection of this session is true?
- A . FortiGate applied proxy-based inspection.
- B . FortiGate applied flow-based NGFW policy-based inspection.
- C . FortiGate applied flow-based inspection.
- D . FortiGate forwarded this session without any inspection.
An LDAP user cannot authenticate against a FortiGate device.
Examine the real time debug output shown in the exhibit when the user attempted the authentication; then answer the question below.
Based on the output in the exhibit, what can cause this authentication problem?
- A . The FortiGate has been configured with the wrong password for the LDAP administrator.
- B . User student is using a wrong password.
- C . User student is not found in the LDAP server.
- D . The FortiGate has been configured with the wrong authentication schema.
Refer to the exhibit, which contains the output of a web filtering diagnose command.
Which statement explains why the cache statistics are all zeros?
- A . The FortiGate web filter cache is disabled in the FortiGate configuration.
- B . FortiGate is using flow-based inspection which does not use the cache.
- C . The administrator has reallocated the cache memory to a separate process.
- D . There are no users making web requests.
Refer to the exhibit, which contains partial output from an IKE real-time debug.
Based on the debug output, which phase 1 setting is enabled in the configuration of this VPN?
- A . auto-discovery-receiver
- B . auto-discovery-forwarder
- C . auto-discovery-shortcut
- D . auto-discovery-sender
An administrator wants to capture ESP traffic between two FortiGates using the built-in sniffer. If the administrator knows that there is no NAT device located between both FortiGates,
What command should the administrator execute?
- A . diagnose sniffer packet any ‘udp port 500’
- B . diagnose sniffer packet any ‘udp port 4500’
- C . diagnose sniffer packet any ‘esp’
- D . diagnose sniffer packet any ‘udp port 500 or udp port 4500’
What are two impacts on applications if adjusting the TCP Maximum Segment Size (MSS) on FortiGate? (Choose two.)
- A . The MSS configuration is prone to errors since it requires a thorough understanding of the network path.
- B . The packet count increases adding unnecessary TCP headers when the MSS value is increased.
- C . The overall data throughput is decreased when there is a decrease in MSS value.
- D . The network efficiency improves when there is a decrease in MSS value.
Which of the following statements is true regarding a FortiGate configured as an explicit web proxy?
- A . FortiGate limits the number of simultaneous sessions per explicit web proxy user. This limit CANNOT be modified by the administrator.
- B . FortiGate limits the total number of simultaneous explicit web proxy users.
- C . FortiGate limits the number of simultaneous sessions per explicit web proxy user. The limit CAN be modified by the administrator.
- D . FortiGate limits the number of workstations that authenticate using the same web proxy user credentials. This limit CANNOT be modified by the administrator.
Which statement about memory conserve mode is true?
- A . A FortiGate exits conserve mode when the configured memory use threshold reaches yellow.
- B . A FortiGate Starts dropping all the new and old sessions when the configured memory use threshold reaches extreme.
- C . A FortiGate starts dropping new sessions when the configured memory use threshold reaches red
- D . A FortiGate enters conserve mode when the configured memory use threshold reaches red