Summer Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dcdisc65

Page: 1 / 2
Total 17 questions
Exam Code: NSE6_FNC-7.2                Update: Oct 15, 2025
Exam Name: Fortinet NSE 6 - FortiNAC 7.2

Fortinet Fortinet NSE 6 - FortiNAC 7.2 NSE6_FNC-7.2 Exam Dumps: Updated Questions & Answers (October 2025)

Question # 1

Which group type can have members added directly from the FortiNAC Control Manager?

A.

Administrator

B.

Device

C.

Port

D.

Host

Question # 2

During an evaluation of state-based enforcement, an administrator discovers that ports that should not be under enforcement have been added to enforcement groups. In which view would the administrator be able to determine who added the ports to the groups?

A.

The Alarms view

B.

The Admin Auditing view

C.

The Event Management view

D.

The Security Events view

Question # 3

When FortiNAC passes a firewall tag to FortiGate, what determines the value that is passed?

A.

Security rule

B.

Device profiling rule

C.

RADIUS group attribute

D.

Logical network

Question # 4

Which two agents can validate endpoint compliance transparently to the end user? (Choose two.)

A.

Dissolvable

B.

Mobile

C.

Passive

D.

Persistent

Question # 5

An administrator is configuring FortiNAC to manage FortiGate VPN users. As part of the configuration, the administrator must configure a few FortiGate firewall policies.

What is the purpose of the FortiGate firewall policy that applies to unauthorized VPN clients?

A.

To deny access to only the production DNS server

B.

To allow access to only the FortiNAC VPN interface

C.

To allow access to only the production DNS server

D.

To deny access to only the FortiNAC VPN interface

Question # 6

Which two policy types can be created on a FortiNAC Control Manager? (Choose two.)

A.

Authentication

B.

Network Access

C.

Endpoint Compliance

D.

Supplicant EasvConnect

Question # 7

Two FortiNAC devices have been configured in an HA configuration. After five failed heartbeats between the primary device and secondary device, the primary device fail to ping the designated gateway. What happens next?

A.

The primary device continues to operate as the in-control device and changes the status or secondary device to contact lost.

B.

The primary device changes its designation to secondary, and the secondary device changes to primary.

C.

The primary device shuts down NAC processes and changes to a management down status.

D.

The primary device waits 3 minutes and attempts to re-establish the HA heartbeat before attempting a second ping of the gateway.

Question # 8

Where do you look to determine which network access policy, if any is being applied to a particular host?

A.

The Policy Details view for the host

B.

The Connections view

C.

The Port Properties view of the hosts port

D.

The Policy Logs view

Question # 9

What method of communication does FortiNAC use to control VPN host access on FortiGate?

A.

RSSO

B.

Security Fabric

C.

RADIUS accounting

D.

SAMLSSO

Question # 10

Which connecting endpoints are evaluated against all enabled device profiling rules?

A.

All hosts, each time they connect

B.

Rogues devices, only when they connect for the first time

C.

Known trusted devices each time they change location

D.

Rogues devices, each time they connect

Page: 1 / 2
Total 17 questions

Most Popular Certification Exams

Payment

       

Contact us

dumpscollection live chat

Site Secure

mcafee secure

TESTED 16 Oct 2025