[Aug 25, 2021] NSE5_FCT-6.2 Ultimate Study Guide - PassReview [Q11-Q27]

Share

[Aug 25, 2021] NSE5_FCT-6.2 Ultimate Study Guide -  PassReview

Ultimate Guide to Prepare NSE5_FCT-6.2 Certification Exam for NSE 5 Network Security Analyst in 2021

NEW QUESTION 11
An administrator installs FortiClient on Windows Server.
What is the default behavior of real-time protection control?

  • A. Real-time protection must update AV signature database
  • B. Real-time protection sends malicious files to FortiSandbox when the file is not detected locally
  • C. Real-time protection is disabled
  • D. Real-time protection must update the signature database from FortiSandbox

Answer: C

 

NEW QUESTION 12
Refer to the exhibit.

Based on the settings shown in the exhibit which statement about FortiClient behavior is true?

  • A. FortiClient blocks and deletes infected files after scanning them.
  • B. FortiClient copies infected files to the Resources folder without scanning them.
  • C. FortiClient quarantines infected files and reviews later, after scanning them.
  • D. FortiClient scans infected files when the user copies files to the Resources folder

Answer: C

 

NEW QUESTION 13
Refer to the exhibit.

Based on the settings shown in the exhibit, which two actions must the administrator take to make the endpoint compliant? (Choose two)

  • A. Run Calculator application on the endpoint.
  • B. Patch applications that have vulnerability rated as high or above.
  • C. Integrate FortiSandbox for infected file analysis.
  • D. Enable the webfilter profile

Answer: A,B

 

NEW QUESTION 14
In a FortiSandbox integration, what does the remediation option do?

  • A. Deny access to a file when it sees no results
  • B. Alert and notify only
  • C. Exclude specified files
  • D. Wait for FortiSandbox results before allowing files

Answer: D

 

NEW QUESTION 15
Refer to the exhibit.

Based on the Security Fabric automation settings, what action will be taken on compromised endpoints?

  • A. Endpoints will be quarantined through FortiSwitch
  • B. Endpoints will be banned on FortiGate
  • C. An email notification will be sent for compromised endpoints
  • D. Endpoints will be quarantined through EMS

Answer: D

 

NEW QUESTION 16
Which two VPN types can a FortiClient endpoint user inmate from the Windows command prompt? (Choose two)

  • A. IPSec
  • B. L2TP
  • C. SSL VPN
  • D. PPTP

Answer: A,C

 

NEW QUESTION 17
What action does FortiClient anti-exploit detection take when it detects exploits?

  • A. Deletes the compromised application process
  • B. Blocks memory allocation to the compromised application process
  • C. Patches the compromised application process
  • D. Terminates the compromised application process

Answer: D

 

NEW QUESTION 18
Refer to the exhibit.

Based on the FortiClient log details shown in the exhibit, which two statements are true? (Choose two)

  • A. The file location is \??\D: \Users
  • B. The filename IS Unconfirmed 399290-crdownload.
  • C. The filename is sent to FortiSandbox for further inspection.
  • D. The file status is Quarantined

Answer: B,D

 

NEW QUESTION 19
Refer to the exhibit.

Based on the CLI output from FortiGate. which statement is true?

  • A. FortiGate is configured with local user group
  • B. FortiGate is configured to pull user groups from FortiClient EMS
  • C. FortiGate is configured to pull user groups from FortiAuthenticator
  • D. FortiGate is configured to pull user groups from AD Server.

Answer: B

 

NEW QUESTION 20
Which network component sends a notification after identifying a connected endpoint in the quarantine automation process?

  • A. FortiAnalyzer
  • B. FortiClient EMS
  • C. FortiClient
  • D. FortiGate

Answer: C

 

NEW QUESTION 21
When site categories are disabled on FortiClient webfilter and AV (malicious websites), which feature protects the endpoint?

  • A. FortiSandbox URL list
  • B. Web Exclusion list
  • C. Block malicious websites on Antivirus
  • D. Endpoint host file

Answer: B

 

NEW QUESTION 22
Refer to the exhibit.

Based on the logs shown in the exhibit, why did FortiClient EMS fail to install FortiClient on the endpoint?

  • A. Windows installer service is not running
  • B. Task scheduler service is not running
  • C. Windows firewall is not running
  • D. Remote registry service is not running

Answer: B

 

NEW QUESTION 23
......

NSE 5 Network Security Analyst Fundamentals-NSE5_FCT-6.2 Exam-Practice-Dumps: https://www.passreview.com/NSE5_FCT-6.2_exam-braindumps.html