Pass the Fortinet Fortinet Certified Solution Specialist FCSS_SASE_AD-23 Questions and answers with CertsForce

Viewing page 1 out of 1 pages
Viewing questions 1-10 out of questions
Questions # 1:

Refer to the exhibits.

Question # 1

Question # 1

When remote users connected to FortiSASE require access to internal resources on Branch-2. how will traffic be routed?

Options:

A.

FortiSASE will use the SD-WAN capability and determine that traffic will be directed to HUB-2. which will then route traffic to Branch-2.


B.

FortiSASE will use the AD VPN protocol and determine that traffic will be directed to Branch-2 directly, using a static route


C.

FortiSASE will use the SD-WAN capability and determine that traffic will be directed to HUB-1, which will then route traffic to Branch-2.


D.

FortiSASE will use the AD VPN protocol and determine that traffic will be directed to Branch-2 directly, using a dynamic route


Expert Solution
Questions # 2:

An organization needs to resolve internal hostnames using its internal rather than public DNS servers for remotely connected endpoints. Which two components must be configured on FortiSASE to achieve this? (Choose two.)

Options:

A.

SSL deep inspection


B.

Split DNS rules


C.

Split tunnelling destinations


D.

DNS filter


Expert Solution
Questions # 3:

How does FortiSASE hide user information when viewing and analyzing logs?

Options:

A.

By hashing data using Blowfish


B.

By hashing data using salt


C.

By encrypting data using Secure Hash Algorithm 256-bit (SHA-256)


D.

By encrypting data using advanced encryption standard (AES)


Expert Solution
Questions # 4:

To complete their day-to-day operations, remote users require access to a TCP-based application that is hosted on a private web server. Which FortiSASE deployment use case provides the most efficient and secure method for meeting the remote users' requirements?

Options:

A.

SD-WAN private access


B.

inline-CASB


C.

zero trust network access (ZTNA) private access


D.

next generation firewall (NGFW)


Expert Solution
Questions # 5:

A customer wants to upgrade their legacy on-premises proxy to a could-based proxy for a hybrid network. Which FortiSASE features would help the customer to achieve this outcome?

Options:

A.

SD-WAN and NGFW


B.

SD-WAN and inline-CASB


C.

zero trust network access (ZTNA) and next generation firewall (NGFW)


D.

secure web gateway (SWG) and inline-CASB


Expert Solution
Questions # 6:

Which two additional components does FortiSASE use for application control to act as an inline-CASB? (Choose two.)

Options:

A.

intrusion prevention system (IPS)


B.

SSL deep inspection


C.

DNS filter


D.

Web filter with inline-CASB


Expert Solution
Questions # 7:

When accessing the FortiSASE portal for the first time, an administrator must select data center locations for which three FortiSASE components? (Choose three.)

Options:

A.

Endpoint management


B.

Points of presence


C.

SD-WAN hub


D.

Logging


E.

Authentication


Expert Solution
Questions # 8:

When deploying FortiSASE agent-based clients, which three features are available compared to an agentless solution? (Choose three.)

Options:

A.

Vulnerability scan


B.

SSL inspection


C.

Anti-ransomware protection


D.

Web filter


E.

ZTNA tags


Expert Solution
Questions # 9:

An organization wants to block all video and audio application traffic but grant access to videos from CNN Which application override action must you configure in the Application Control with Inline-CASB?

Options:

A.

Allow


B.

Pass


C.

Permit


D.

Exempt


Expert Solution
Viewing page 1 out of 1 pages
Viewing questions 1-10 out of questions