● FCP - FortiClient EMS 7.2 Administrator Exam Materials
The Actual questions for FCP - FortiClient EMS 7.2 Administrator Exam (FCP_FCT_AD-7.2) - Updated Weekly
Question #1

Question #2

Refer to the exhibit.
Based on the logs shown in the exhibit, why did FortiClient EMS fail to install FortiClient on the endpoint?
(Choose one answer)
- A. The FortiClient antivirus service is not running.
- B. The Windows installer service is not running.
- C. The remote registry service is not running.
- D. The task scheduler service is not running.
Question #3
Which two statements are true about ZTNA? (Choose two answers)
- A. ZTNA provides role-based access.
- B. ZTNA manages access for remote users only.
- C. ZTNA manages access through the client only.
- D. ZTNA provides a security posture check.
Question #4
When site categories are disabled in FortiClient webfilter and antivirus (malicious websites),
which feature can be used to protect the endpoint from malicious web access?
(Choose one answer)
- A. Web exclusion list
- B. FortiSandbox URL list
- C. Real-time protection list
- D. Block malicious websites on antivirus
Question #5

Refer to the exhibits.
Which show the Zero Trust Tag Monitor and the FortiClient GUI status.
Remote-Client is tagged as Remote-Users on the FortiClient EMS Zero Trust Tag Monitor.
What must an administrator do to show the tag on the FortiClient GUI?
(Choose one answer)
- A. Update tagging rule logic to enable tag visibility
- B. Change the FortiClient system settings to enable tag visibility
- C. Change the endpoint control setting to enable tag visibility
- D. Change the user identity settings to enable tag visibility
Question #6
An administrator wants to simplify remote access without asking users to provide user credentials.
Which access control method provides this solution?
(Choose one answer)
- A. ZTNA IP/MAC filtering mode
- B. ZTNA access proxy (ZTNA Full Mode)
- C. SSL VPN
- D. L2TP
Question #7
A FortiClient EMS administrator has enabled the compliance rule for the sales department.
Which Fortinet device will enforce compliance with dynamic access control?
(Choose one answer)
- A. FortiClient
- B. FortiClient EMS
- C. FortiGate
- D. FortiAnalyzer
Question #8
In a ForliSandbox integration, what does the remediation option do? (Choose one answer)
- A. Deny access to a tile when it sees no results
- B. Alert and notify only
- C. Exclude specified files
- D. Wait for FortiSandbox results before allowing files
Question #9
An administrator needs to connect FortiClient EMS as a fabric connector to FortiGate.
What is the prerequisite to gel FortiClient EMS to connect to FortiGate successfully?
(Choose one answer)
- A. Import and verify the FortiClient EMS root CA certificate on FortiGate.
- B. Revoke and update the FortiClient client certificate on EMS.
- C. Import and verify the FortiClient client certificate on FortiGate.
- D. Revoke and update the FortiClient EMS root CA.
Question #10
An administrator must add an authentication server on FortiClient EMS in a different security zone that cannot allow a direct connection.
Which solution can provide secure access between FortiClient EMS and the Active Directory server?
(Choose one answer)
- A. Configure and deploy a FortiGate device between FortiClient EMS and the Active Directory server.
- B. Configure Active Directory and install FortiClient EMS on the same VM.
- C. Configure a slave FortiClient EMS on a virtual machine.
- D. Configure an Active Directory connector between FortiClient EMS and the Active Directory server.
Refer to the exhibit, which shows FortiClient EMS deployment profiles.
When an administrator creates a deployment profile on FortiClient EMS. which statement about the deployment profile is true? (Choose one answer)