Weekend Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

FCP_GCS_AD-7.6 FCP - Google Cloud Security 7.6 Administrator Questions and Answers

Questions 4

An administrator configured an external fabric connector for Google Cloud to pull information from Google Cloud, including addresses, VM names, and subnets to create firewall policies.

When trying to create dynamic firewall addresses, the list of available instances does not populate any information from Google Cloud.

Which two issues are the most probable cause? (Choose two.)

Options:

A.

Google Cloud Metadata API access is disabled for Compute Engine for the FortiGate instance.

B.

There are no VM instances deployed in Google Cloud.

C.

The VM instances in Google Cloud have multiple IP address assigned to them.

D.

The VM instances in Google Cloud were not deployed using Google Cloud marketplace.

Buy Now
Questions 5

For what three reasons must you deploy a set of Google Cloud passthrough network load balancers for an active-passive high-availability (HA) FortiGate cluster instead of a set of Google Cloud proxy network load balancers? (Choose three.)

Options:

A.

Passthrough network load balancers terminate SSL connections.

B.

Passthrough network load balancers support health checks.

C.

Passthrough network load balancers rely on API calls from FortiGate devices during HA failovers.

D.

Passthrough network load balancers can forward all protocols.

E.

Passthrough network load balancers offer the highest throughput.

Buy Now
Questions 6

Refer to the exhibit.

FCP_GCS_AD-7.6 Question 6

Which action must the administrator take to route traffic from VPC B to VPC A?

Options:

A.

The administrator must create a new VPC peering connection between VPC A and VPC B.

B.

The administrator must configure a custom route in VPC B and point the gateway to the VPC peering service.

C.

The administrative must configure a custom route in VPC B and point the gateway to VPC A.

D.

The administrator must deploy a FortiGate VM with at least three network interfaces.

Buy Now
Questions 7

Refer to the exhibit.

FCP_GCS_AD-7.6 Question 7

An administrator is troubleshooting an issue when a high-availability (HA) failover occurs.

Which conclusion can you draw from the debug output?

Options:

A.

The HA cluster is accessible using HTTPS on 34.68.13.24 and 34.66.4.139.

B.

The health check has successfully updated the internal custom route to forward all internal traffic to 172.16.1.3.

C.

Both cluster members are located in the same zone.

D.

The HA cluster is deployed using the software-defined network (SDN) connector.

Buy Now
Questions 8

An administrator is tasked to deploy two FortiGate devices in two different zoned to achieve geographical redundancy.

Which two architectural considerations must the administrator address? (Choose two.)

Options:

A.

The FortiGate devices must be deployed in two different regions.

B.

The FortiGate devices must not be deployed in the same VPC.

C.

The FortiGate devices cannot be assigned the second IP address in the subnets that they are deployed in.

D.

The FortiGate devices can be deployed in the same subnet.

Buy Now
Questions 9

A cloud administrator is tasked with protecting web applications hosted in Google Cloud.

Which three cloud offerings can the administrator use to accomplish the task? (Choose three.)

Options:

A.

Google Cloud Run

B.

Google Cloud IAM

C.

FortiWeb VM

D.

Google Cloud Armor

E.

FortiWeb Cloud

Buy Now
Questions 10

Refer to the exhibit.

FCP_GCS_AD-7.6 Question 10

An administrator is troubleshooting network connectivity issues between two VMs deployed in Google Cloud.

One VM is a FortiGate located in the subnet “wan” that is part of the VPC “e-commerce”. The other VM is a Windows server located in subnet “servers”, which is also in the “e-commerce” VPC.

What are two reasons you cannot pint the Windows server from FortiGate? (Choose two.)

Options:

A.

Add a Google Cloud firewall rule to allow ICMP traffic inbound to the Windows firewall VM.

B.

The Windows firewall is blocking the traffic.

C.

ICMP traffic is blocked between Google Cloud subnets by default.

D.

The default Google Cloud firewall policy does not allow this traffic.

Buy Now
Exam Code: FCP_GCS_AD-7.6
Exam Name: FCP - Google Cloud Security 7.6 Administrator
Last Update: Aug 24, 2025
Questions: 35

PDF + Testing Engine

$63.52  $181.49

Testing Engine

$50.57  $144.49
buy now FCP_GCS_AD-7.6 testing engine

PDF (Q&A)

$43.57  $124.49
buy now FCP_GCS_AD-7.6 pdf