Month End Sale - Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70dumps

FCP_ZCS_AD-7.4 Questions and Answers

Question # 6

You are deploying a site-to-site IPsec VPN connection between your on-premise subnet and your Azure VNets.

What is the most important advantage for using FortiGate at both ends of the tunnel?

A.

It minimizes the need for encryption in transit

B.

It allows scaling based on performance and capacity requirements

C.

It provides consistent security policies and configurations

D.

It reduces the need for troubleshooting due to FortiGate automatic configuration

Full Access
Question # 7

Refer to the exhibit.

You are troubleshooting a network connectivity issue between two VMs that are deployed in Azure.

One VM is a FortiGate that has one interface in the DMZ subnet, which is in the Production VNet. The other VM is a Windows Server in the Servers subnet, which is also in the Production VNet. You cannot ping the Windows Server from the FortiGate VM.

What is the reason for this?

A.

You have not created a VPN to allow traffic between those subnets

B.

By default, Azure does not allow ICMP traffic between subnets

C.

The firewall in the Windows VM is blocking the traffic

D.

You have not configured a user-defined route for this traffic

Full Access
Question # 8

How are the configurations synchronized between two FortiGate VMs in an active-passive HA with SDN connector failover deployed from the Azure marketplace?

A.

Using unicast FGCP

B.

Using system autoscaling during a failover

C.

An Azure function distributes the configuration files

D.

By configuring FGSP on the primary

Full Access
Question # 9

A Linux server was deployed in a protected subnet with a dynamic IP address. A FortiGate VM in the internal subnet provides traffic filtering to it. and you must implement a firewall policy using the IP address of the Linux server.

Which feature could help integrate FortiGate using Linux server tags?

A.

Targets Management

B.

Microsoft Entra ID

C.

Software-defined network (SDN) connector

D.

Service Fabric Cluster

Full Access
Question # 10

What is a limitation of the Network Security Groups (NSGs) in Azure?

A.

NSGs allow the filtering of inbound traffic only.

B.

NSGs are applied only to vNICs.

C.

NSGs operate at the application layer, limiting their effectiveness in the network layer.

D.

NSGs cannot be applied to individual virtual machines.

Full Access