Total 55 Questions
Last Updated On : 26-Nov-2025
Why does FortiGate need the root CA certificate of FortiCient EMS?
A. To revoke FortiClient client certificates
B. To sign FortiClient CSR requests
C. To update FortiClient client certificates
D. To trust certificates issued by FortiClient EMS
An administrator has a requirement to add user authentication to the ZTNA access for remote or off-fabric users Which FortiGate feature is required m addition to ZTNA?
A. FortiGate FSSO
B. FortiGate certificates
C. FortiGate explicit proxy
D. FortiGate endpoint control
ZTNA Network Topology

Refer to the exhibits, which show a network topology diagram of ZTNA proxy access and
the ZTNA rule configuration.
An administrator runs the diagnose endpoint record list CLI command on FortiGate to
check Remote-Client endpoint information, however Remote-Client is not showing up in theendpoint record list.
What is the cause of this issue?
A. Remote-Client has not initiated a connection to the ZTNA access proxy.
B. Remote-Client provided an empty client certificate to connect to the ZTNA access proxy.
C. Remote-Client provided an invalid certificate to connect to the ZTNA access proxy.
D. Remote-Client failed the client certificate authentication.
An administrator configures ZTNA configuration on the FortiGate. Which statement is true about the firewall policy?
A. It redirects the client request to the access proxy.
B. It uses the access proxy.
C. It defines ZTNA server.
D. It only uses ZTNA tags to control access for endpoints.
Refer to the exhibit.

Based on the FortiClient tog details shown in the exhibit, which two statements ace true?
(Choose two.)
A. The filename Is Unconfirmed 899290.crdovnload.
B. The file status is Quarantined
C. The filename is sent to FortiSandbox for further inspection.
D. The file location is \??\D:\Users\.
Refer to the exhibit.

Based on the FortiClient logs shown in the exhibit which application is blocked by the
application firewall?
A. Twitter
B. Facebook
C. Internet Explorer
D. Firefox
Refer to the exhibit, which shows the endpoint summary information on FortiClient EMS.

What two conclusions can you make based on the Remote-Client status shown above?
(Choose two.)
A. The endpoint is classified as at risk.
B. The endpoint has been assigned the Default endpoint policy.
C. The endpoint is configured to support FortiSandbox.
D. The endpoint is currently off-net.
| Page 2 out of 8 Pages |
| FCP_FCT_AD-7.2 Practice Test Home |
Our new Timed FCP_FCT_AD-7.2 Exam Simulation replicates the exact format, question count, and strict time limit of the real test.
We don't just test your knowledge; we build your Fortinet exam-day stamina and speed, so you can answer with confidence when it matters most.