FCP_FGT_AD-7.6 Exam Details

  • Exam Code
    :FCP_FGT_AD-7.6
  • Exam Name
    :FortiGate 7.6 Administrator FCP_FGT_AD-7.6
  • Certification
    :Fortinet Certifications
  • Vendor
    :Fortinet
  • Total Questions
    :138 Q&As
  • Last Updated
    :May 30, 2026

Fortinet FCP_FGT_AD-7.6 Online Questions & Answers

  • Question 71:

    Refer to the exhibits.

    The exhibits show the system performance output and default configuration of high memory usage thresholds on a FortiGate device.

    Based on the system performance output, what are the two possible outcomes? (Choose two.)

    A. FortiGate has entered conserve mode.
    B. Administrators can access FortiGate only through the console port.
    C. Administrators can change the configuration.
    D. FortiGate drops new sessions.

  • Question 72:

    An administrator needs to prevent administrators from accessing FortiGate from untrusted WAN addresses. Which configuration enforces this requirement?

    A. Disable HTTPS service under Administrative Access on the WAN interface
    B. Apply a local-in policy to block HTTPS from untrusted sources
    C. Remove the "FGT_Admin" group from trusted hosts list
    D. Configure trusted hosts under each admin account and leave WAN access enabled

  • Question 73:

    An administrator sees that some traffic is not offloaded to hardware acceleration even though offloading is supported. Which scenario prevents hardware acceleration?

    A. Traffic matching a deny policy
    B. Traffic using IPsec encryption
    C. Traffic inspected by antivirus in proxy-based mode
    D. Traffic routed to a VLAN subinterface

  • Question 74:

    Which method allows management access to the FortiGate CLI without network connectivity?

    A. CLI console widget
    B. SSH console
    C. Telnet console
    D. Serial console

  • Question 75:

    After configuring a new IPS sensor with several custom signatures, the administrator sees no logs from the signatures even though the traffic matches the firewall policy.

    What is the likely reason?

    A. The IPS sensor is configured in monitor mode
    B. Logging is not enabled in the firewall policy
    C. The signatures' severity levels are set to Low
    D. The IPS engine is in bypass state due to conserve mode

  • Question 76:

    Refer to the exhibits.

    An administrator configured the Web Filter Profile to block access to all social networking sites except Facebook. However, when users try to access Facebook.com, they are redirected to a FortiGuard web filtering block page.

    Based on the exhibits, which configuration change must the administrator make to allow Facebook while blocking all other social networking sites?

    A. Change the type as Simple in the Static URL Filter section.
    B. Set the Social Networking action as warning in the FortiGuard Category Based Filter.
    C. Change the Feature set of Web Filter Profile as Proxy-based.
    D. Set the Action as Exempt for www.facebook.com in the Static URL Filter.

  • Question 77:

    Which three methods are used by the collector agent for AD polling? (Choose three.)

    A. WinSecLog
    B. NetAPI
    C. FortiGate polling
    D. FSSO REST API
    E. WMI

  • Question 78:

    Refer to the exhibit.

    As an administrator you have created an IPS profile, but it is not performing as expected. While testing you got the output as shown in the exhibit.

    What could be the possible reason of the diagnose output shown in the exhibit?

    A. There is a no firewall policy configured with an IPS security profile.
    B. FortiGate entered into IPS fail open state.
    C. Administrator entered the command diagnose test application ipsmonitor 5.
    D. Administrator entered the command diagnose test application ipsmonitor 99.

  • Question 79:

    Which two statements are correct when FortiGate enters conserve mode? (Choose two.)

    A. FortiGate continues to run critical security actions, such as quarantine.
    B. FortiGate refuses to accept configuration changes.
    C. FortiGate halts complete system operation and requires a reboot to regain available resources.
    D. FortiGate continues to transmit packets without IPS inspection when the fail-open global setting in IPS is enabled.

  • Question 80:

    Refer to the exhibit.

    What would be the impact of these settings on the Server certificate SNI check configuration on FortiGate?

    A. FortiGate will accept and use the CN in the server certificate for URL filtering if the SNI does not match the CN or SAN fields.
    B. FortiGate will accept the connection with a warning if the SNI does not match the CN or SAN fields.
    C. FortiGate will close the connection if the SNI does not match the CN or SAN fields.
    D. FortiGate will close the connection if the SNI does not match the CN and SAN fields

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Fortinet exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your FCP_FGT_AD-7.6 exam preparations and Fortinet certification application, do not hesitate to visit our Vcedump.com to find your solutions here.