Pre-Winter Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

Pass the Fortinet Fortinet Certified Solution Specialist FCSS_SASE_AD-25 Questions and answers with CertsForce

Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions
Questions # 11:

Your organization is currently using FortiSASE for its cybersecurity. They have recently hired a contractor who will work from the HQ office and who needs temporary internet access in order to set up a web-based point of sale (POS) system.

What is the recommended way to provide internet access to the contractor?

Options:

A.

Use zero trust network access (ZTNA) and tag the client as an unmanaged endpoint.


B.

Use the self-registration portal on FortiSASE to grant internet access.


C.

Use a tunnel policy with a contractors user group as the source on FortiSASE to provide internet access.


D.

Use a proxy auto-configuration (PAC) file and provide secure web gateway (SWG) service as an explicit web proxy.


Expert Solution
Questions # 12:

How do security profile group objects behave when central management is enabled on FortiSASE?

Options:

A.

Objects support two-way synchronization.


B.

Objects created on FortiSASE can be retrieved on FortiManager.


C.

Objects that are only flow-based are supported.


D.

Objects are considered read-only on FortiSASE.


Expert Solution
Questions # 13:

Refer to the exhibits.

Question # 13

Question # 13

Question # 13

Question # 13

A FortiSASE administrator is trying to configure FortiSASE as a spoke to a FortiGate hub.

The VPN tunnel does not establish.

Which configuration needs to be modified to bring the tunnel up?

Options:

A.

FortiSASE spoke devices do not support mode config.


B.

The network overlay ID must match on FortiSASE and the hub.


C.

The BGP router ID must match on the hub and FortiSASE.


D.

Auto-discovery-sender must be disabled on IPsec phase1 settings.


Expert Solution
Questions # 14:

Which secure internet access (SIA) use case minimizes individual endpoint configuration?

Options:

A.

Agentless remote user internet access


B.

Site-based remote user internet access


C.

SIA using ZTNA


D.

SIA for FortiClient agent remote users


Expert Solution
Questions # 15:

What happens to the logs on FortiSASE that are older than the configured log retention period?

Options:

A.

The logs are deleted from FortiSASE.


B.

The logs are indexed and can be stored in a SQL database.


C.

The logs are backed up on FortiCloud.


D.

The logs are compressed and archived.


Expert Solution
Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions