Summer Limited Time 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dealsixty

FCP_ZCS_AD-7.4 Exam Dumps - Fortinet Public Cloud Security Questions and Answers

Question # 4

After integrating a FortiGate VM with Azure Route Server, you detect that routes are not propagating successfully.

What initial step could you perform to diagnose the root cause?

Options:

A.

Examine the Azure Microsoft Entra ID permissions associated with the FortiGate VM to ensure that correct authentication is being used for BGP peering

B.

Monitor the network latency between the FortiGate VM and Azure Route Server to identify potential communication delays affecting route propagation

C.

Verify that the FortiGate VM is running the latest firmware version

D.

Verify the BGP peering status on both the FortiGate VM and Azure Route Server

Buy Now
Question # 5

Refer to the exhibit.

An Azure Route Server and an active-passive FortiGate with Elastic Load Balancing (ELB) and Internal Load Balancing (ILB) have been deployed successfully and they are sharing and populating BGP routes in the Protected VNet.

A Linux server has been deployed in a new VNet spoke. It is expected that Azure Route Server

should inject the FortiGate BGP routes into the Linux server but that failed.

How can you diagnose the problem?

Options:

A.

Monitor effective routes on the Azure network interface (NIC) of the Linux server

B.

Review FortiGate BGP neighbors

C.

Verify the BGP setup on Azure Route Server

D.

Linux server doesn't support BGP negotiation with Azure Route Server

Buy Now
Question # 6

Which role does the local network gateway play in FortiGate to Azure VPN connectivity?

Options:

A.

It manages the encryption keys for the VPN connection

B.

It represents the Azure VPN Gateway in the FortiGate configuration

C.

It defines the IP addresses of the on-premises network

D.

It is responsible for load balancing traffic between FortiGate and Azure

Buy Now
Question # 7

Your organization is in the process of optimizing its Azure network architecture and wants to dynamically manage and exchange routing information between its virtual networks and on-premises networks.

Which Azure service would help to provide a centralized point for efficient route management and dynamic routing?

Options:

A.

Azure Virtual WAN

B.

Azure VPN Gateway

C.

Azure ExpressRoute

D.

Azure Route Server

Buy Now
Question # 8

Refer to the exhibit.

The exhibit shows some of the properties of a virtual NIC that is used by a FortiGate VM deployed in Azure.

The virtual NIC shown is connected to a subnet (10.0.1.0/26) with several VMs that will be accessing the internet through the FortiGate VM.

Which statement is true for this scenario?

Options:

A.

The NIC in the exhibit needs to be assigned a public IP address.

B.

The VMs in the 10.0.1.0/26 subnet can access the internet through FortiGate.

C.

You must change the default gateway on the VMs in the Internal Subnet for this to work.

D.

The parameters of the virtual NIC are not configured correctly.

Buy Now
Question # 9

What are two characteristics of Azure standard public IP addresses? (Choose two.)

Options:

A.

They support the use of availability zones

B.

They can be dynamic or static

C.

They can be used with load balancers of any SKU

D.

They require the configuration of NSGs for inbound traffic

Buy Now
Question # 10

Refer to the exhibit.

A high availability, active-active FortiGate with Elastic Load Balancing (ELB) and Internal Load Balancing (ILB) was deployed in your Azure environment.

Which tools can you use to configure synchronization? (Choose two.)

Options:

A.

FortiGate Clustering Protocol (FGCP)

B.

Autoscale

C.

Heartbeat interfaces

D.

Software-defined network (SDN) Fabric Connector

E.

FortiManager

Buy Now
Question # 11

Which additional features does Azure Firewall Premium offer compared to Azure Firewall Standard?

Options:

A.

Content filtering and threat intelligence integration

B.

Antivirus detection and AI prevention capabilities

C.

Advanced DDoS protection and VPN diagnostics

D.

Enhanced URL filtering and web categories

Buy Now
Question # 12

Why would you use a user-defined route in Azure?

Options:

A.

To manage user authentication and access control

B.

To have the traffic from the other VMs inspected by FortiGate

C.

To allow inbound management access to FortiGate VMs

D.

To allow communication between FortiGate VMs on two subnets in the same VNET

Buy Now
Question # 13

Refer to the exhibits.

A high availability (HA) active-active FortiGate with Elastic Load Balancing (ELB) and Internal Load Balancing (ILB) was deployed with a default setup to filter traffic to a Linux server running Apache server.

Ports 80 and 22 are open on the Linux server, and on FortiGate a VIP and firewall policy are configured to allow traffic through ports 80 and 22. Traffic on port 80 is successful, but traffic on port 22 is not detected by FortiGate.

What configuration changes could you perform to allow SSH traffic?

Options:

A.

Configure a customized port under the Frontend IP configuration

B.

Add a new Azure load balancing rule

C.

Include the Linux server in the back-end pool options

D.

Add a new Inbound NAT rule

Buy Now
Exam Code: FCP_ZCS_AD-7.4
Exam Name: FCP - Azure Cloud Security 7.4 Administrator
Last Update: Apr 26, 2025
Questions: 35
FCP_ZCS_AD-7.4 pdf

FCP_ZCS_AD-7.4 PDF

$34  $84.99
FCP_ZCS_AD-7.4 Engine

FCP_ZCS_AD-7.4 Testing Engine

$38  $94.99
FCP_ZCS_AD-7.4 PDF + Engine

FCP_ZCS_AD-7.4 PDF + Testing Engine

$54  $134.99