FCP_FGT_AD-7.6 Actual Exam Questions

Last updated on July 5, 2025.
Vendor:Fortinet
Exam Code:FCP_FGT_AD-7.6
Exam Name:FCP - FortiGate 7.6 Administrator
Exam Questions:45
 

Topic 1 - Exam A

Question #1 Topic 1

An administrator wants to configure dead peer detection (DPD) on IPsec VPN for detecting dead tunnels. The requirement is that FortiGate sends DPD probes only when there is no inbound traffic.
Which DPD mode on FortiGate meets this requirement?

  • A. Enabled
  • B. On Idle
  • C. Disabled
  • D. On Demand
Reveal Solution Hide Solution   Discussion   1

Correct Answer: B 🗳️

Question #2 Topic 1

Which two statements about equal-cost multi-path (ECMP) configuration on FortiGate are true? (Choose two.)

  • A. If SD-WAN is disabled, you can configure the parameter v4-ecmp-mode to volume-based.
  • B. If SD-WAN is enabled, you can configure routes with unequal distance and priority values to be part of ECMP.
  • C. If SD-WAN is disabled, you configure the load balancing algorithm in config system settings.
  • D. If SD-WAN is enabled, you control the load balancing algorithm with the parameter load-balance-mode.
Reveal Solution Hide Solution   Discussion  

Correct Answer: AD 🗳️

Question #3 Topic 1

You have created a web filter profile named restrict_media-profile with a daily category usage quota.
When you are adding the profile to the firewall policy, the restrict_media-profile is not listed in the available web profile drop down.
What could be the reason?

  • A. The firewall policy is in no-inspection mode instead of deep-inspection.
  • B. The inspection mode in the firewall policy is not matching with web filter profile feature set.
  • C. The web filter profile is already referenced in another firewall policy.
  • D. The naming convention used in the web filter profile is restricting it in the firewall policy.
Reveal Solution Hide Solution   Discussion  

Correct Answer: B 🗳️

Question #4 Topic 1

Refer to the exhibit.

As an administrator you have created an IPS profile, but it is not performing as expected. While testing you got the output as shown in the exhibit.
What could be the possible reason of the diagnose output shown in the exhibit?

  • A. There is a no firewall policy configured with an IPS security profile.
  • B. FortiGate entered into IPS fail open state.
  • C. Administrator entered the command diagnose test application ipsmonitor 5.
  • D. Administrator entered the command diagnose test application ipsmonitor 99.
Reveal Solution Hide Solution   Discussion  

Correct Answer: A 🗳️

file Viewing page 1 out of 12 pages.
Viewing questions 1-4 out of 45 questions
Next Questions
Browse atleast 50% to increase passing rate cup
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Loading ...