Pass the Fortinet NSE 6 Network Security Specialist NSE6_FAC-6.4 Questions and answers with CertsForce

Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions
Questions # 11:

Why would you configure an OCSP responder URL in an end-entity certificate?

Options:

A.

To designate the SCEP server to use for CRL updates for that certificate


B.

To identify the end point that a certificate has been assigned to


C.

To designate a server for certificate status checking


D.

To provide the CRL location for the certificate


Expert Solution
Questions # 12:

Which behaviors exist for certificate revocation lists (CRLs) on FortiAuthenticator? (Choose two)

Options:

A.

CRLs contain the serial number of the certificate that has been revoked


B.

Revoked certificates are automaticlly placed on the CRL


C.

CRLs can be exported only through the SCEP server


D.

All local CAs share the same CRLs


Expert Solution
Questions # 13:

A system administrator wants to integrate FortiAuthenticator with an existing identity management system with the goal of authenticating and deauthenticating users into FSSO.

What feature does FortiAuthenticator offer for this type of integration?

Options:

A.

The ability to import and export users from CSV files


B.

RADIUS learning mode for migrating users


C.

C. REST API


D.

D. SNMP monitoring and traps


Expert Solution
Questions # 14:

An administrator is integrating FortiAuthenticator with an existing RADIUS server with the intent of eventually replacing the RADIUS server with FortiAuthenticator.

How can FortiAuthenticator help facilitate this process?

Options:

A.

By configuring the RADIUS accounting proxy


B.

By enabling automatic REST API calls from the RADIUS server


C.

By enabling learning mode in the RADIUS server configuration


D.

By importing the RADIUS user records


Expert Solution
Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions