Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the Fortinet Fortinet Network Security Expert NSE7_SSE_AD-25 Questions and answers with CertsForce

Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions
Questions # 11:

In the Secure Private Access (SPA) use case, which two FortiSASE features facilitate access to corporate applications? (Choose two answers)

Options:

A.

SD-WAN


B.

zero trust network access (ZTNA)


C.

thin edge


D.

cloud access security broker (CASB)


Expert Solution
Questions # 12:

Which two benefits come from integrating SoCaaS with FortiSASE? (Choose two answers)

Options:

A.

Eliminates the need of endpoint projection software


B.

Continuous threat monitoring of all connected endpoints


C.

Centralized visibility of all threat events


D.

Provides bandwidth usage analytics


Expert Solution
Questions # 13:

You are designing a new network, and the cybersecurity policy mandates that all remote users working from home must always be connected and protected. Which FortiSASE component facilitates this always-on security measure? (Choose one answer)

Options:

A.

Unified FortiClient


B.

SDWAN on-ramp2


C.

Secure web gateway


D.

Thin-branch SASE extension


Expert Solution
Questions # 14:

Refer to the exhibits.

Question # 14

How will the application vulnerabilities be patched, based on the exhibits provided? (Choose one answer)

Options:

A.

An administrator will patch the vulnerability remotely using FortiSASE.


B.

The end user will patch the vulnerabilities using the FortiClient software.


C.

The vulnerability will be patched by installing the patch from the vendor ' s website.


D.

The vulnerability will be patched automatically based on the endpoint profile configuration.


Expert Solution
Questions # 15:

Refer to the exhibit.

In the user connection monitor, the FortiSASE administrator notices the user name is showing random characters. Which configuration change must the administrator make to get proper user information?

Options:

A.

Turn off log anonymization on FortiSASE.


B.

Add more endpoint licenses on FortiSASE.


C.

Configure the username using FortiSASE naming convention.


D.

Change the deployment type from SWG to VPN.


Expert Solution
Questions # 16:

Refer to the exhibits.

Question # 16

A FortiSASE administrator has configured an antivirus profile in the security profile group and applied it to the internet access policy. Remote users are still able to download the eicar.com-zip file from https://eicar.org.

Which configuration on FortiSASE is allowing users to perform the download? (Choose one answer)

Options:

A.

Deep inspection is not enabled.


B.

Application control is exempting all the browser traffic.


C.

Web filter is allowing the URL.


D.

Intrusion prevention is disabled.


Expert Solution
Questions # 17:

When accessing the FortiSASE portal for the first time, an administrator must select data center locations for which three FortiSASE components? (Choose three.)

Options:

A.

Endpoint management


B.

Points of presence


C.

SD-WAN hub


D.

Logging


E.

Authentication


Expert Solution
Questions # 18:

Refer to the exhibit.

Question # 18

A customer wants to fine-tune network assignments on FortiSASE, so they modified the IPAM configuration as shown in the exhibit. After this configuration, the customer started having connectivity problems and noticed that devices are using excluded ranges. What could be causing the unexpected behavior and connectivity problems? (Choose two answers)

Options:

A.

The pool must include at least one /20 per security POP for the IPAM to work correctly.


B.

The pool must include at least one /16 per Instance for the IPAM to work correctly.


C.

The pool must include at least one /20 per Instance for the IPAM to work correctly.


D.

The customer excluded too many networks from the pool.


Expert Solution
Questions # 19:

Which two settings are automatically pushed from FortiSASE to FortiClient in a new FortiSASE deployment with default settings? (Choose two answers)

Options:

A.

FortiSASE certificate authority (CA) certificate


B.

Tunnel profile


C.

Real-time protection


D.

Zero trust network access (ZTNA) tags1


Expert Solution
Questions # 20:

Which two components are part of onboarding a secure web gateway (SWG) endpoint? (Choose two)

Options:

A.

FortiSASE CA certificate


B.

proxy auto-configuration (PAC) file


C.

FortiSASE invitation code


D.

FortiClient installer


Expert Solution
Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions