Fortinet NSE5_FCT-7.0 Fortinet NSE 5 - FortiClient EMS 7.0 Exam Practice Test

Page: 1 / 14
Total 49 questions
Question 1

In a FortiSandbox integration, what does the remediation option do?



Answer : C

Under 'Remediation Options' section, there are only two options (Quarantine infected files, Alert & Notify only). https://docs.fortinet.com/document/forticlient/6.0.0/administration-guide/657996/configuring-submission-access-and-remediation#:~:text=disable%20this%20feature.-,Remediation%20Options,-Quarantine%20infected%20files


Question 2

Refer to the exhibit.

Based on the CLI output from FortiGate. which statement is true?



Answer : A


Question 3

Which two statements are true about the ZTNA rule? (Choose two. )



Question 4

Which two benefits are benefits of using multi-tenancy mode on FortiClient EMS? (Choose two.)



Answer : B, C

Licenses are shared among sites: In multi-tenancy mode, licenses can be shared among the different tenant accounts or sites within FortiClient EMS. This means that a pool of licenses can be allocated and utilized across multiple sites or deployments as needed. It helps optimize license utilization and reduces the need for individual licenses for each site or customer.

It provides granular access and segmentation: Multi-tenancy mode allows for the creation of separate tenant accounts or groups within FortiClient EMS. Each tenant can have their own set of policies, configurations, and access rights, providing granular control and segmentation. This enables organizations to manage multiple sites or customer deployments separately within a single FortiClient EMS instance.


Question 5

What is the function of the quick scan option on FortiClient?



Answer : A


Question 6

Which component or device shares ZTNA tag information through Security Fabric integration?



Answer : A

FortiClient EMS is the component that shares ZTNA tag information through Security Fabric integration. ZTNA tags are synchronized from FortiClient EMS as inputs for the FortiGate application gateway. They can be used in ZTNA policies as security posture checks to ensure certain security criteria are met. FortiClient EMS can share ZTNA tags across multiple devices in the Fabric, such as FortiGate, FortiManager, and FortiAnalyzer. FortiClient EMS can also share ZTNA tags across multiple VDOMs on the same FortiGate device.FortiClient EMS can be configured to control the ZTNA tag sharing behavior in the Fabric Devices settings1.

FortiGate is the device that enforces ZTNA policies using ZTNA tags. FortiGate can receive ZTNA tags from FortiClient EMS via Fabric Connector. FortiGate can also publish ZTNA services through the ZTNA portal, which allows users to access applications without installing FortiClient.FortiGate can also provide ZTNA inline CASB for SaaS application access control2.

FortiGate Access Proxy is a feature that enables FortiGate to act as a proxy for ZTNA traffic. FortiGate Access Proxy can be deployed in front of the application servers to provide ZTNA protection. FortiGate Access Proxy can also be deployed behind the application servers to provide ZTNA visibility.FortiGate Access Proxy can use ZTNA tags to identify and authenticate users and devices2.

FortiClient is the endpoint software that connects to ZTNA services. FortiClient can register ZTNA tags with FortiClient EMS based on the endpoint security posture. FortiClient can also use ZTNA tags to access ZTNA services published by FortiGate.FortiClient can also use ZTNA tags to access SaaS applications with ZTNA inline CASB2.


Technical Tip: Behavior of ZTNA Tags shared across multiple vdoms or multiple FortiGate firewalls in the Security Fabric connected to the same FortiClient EMS Server

Synchronizing FortiClient ZTNA tags

Zero Trust Network Access (ZTNA) to Control Application Access

Question 7

What does FortiClient do as a fabric agent? (Choose two.)



Answer : A, C


Page:    1 / 14   
Total 49 questions