What establishes device identity and trust in a zero trust network access (ZTNA) deployment?
Select an option, then click Submit answer.
Reference / correct answer:
public key infrastructure (PKI)
Most accepted answer: B. public key infrastructure (PKI)
Community votes: B=1
Selected Answer: B B. public key infrastructure (PKI) The study guide says “Device identity is established through client certificates, and trust is established among FortiClient, FortiClient EMS, and FortiGate devices.” It also explains that FortiClient gets a client certificate from the EMS ZTNA Certificate Authority (CA), EMS signs it, and FortiGate uses the EMS CA certificate to authenticate clients. That is PKI. So: device fingerprinting is not the primary trust mechanism here FortiClient connection key is for telemetry, not ZTNA trust establishment token-based authentication is user auth, not device identity/trust upvoted 1 times