Free FCSS-SASE-AD-24 Fortinet FCSS-SASE-AD-24 Practice Test Question

Loading demo links...

Showing 1–3 of 3 questions

Question 1 (Topic 1)

Refer to the exhibit. A company has a requirement to inspect all the endpoint internet traffic on FortiSASE, and exclude Google Maps traffic from the FortiSASE VPN tunnel and redirect it to the endpoint physical interface. Which configuration must you apply to achieve this requirement?

Select an option, then click Submit answer.

  • Implement a ZTNA destination rule using Google Maps FQDN on FortiSASE to identify and redirect Google Maps traffic.
  • Configure the Google Maps FQDN as a split tunneling destination on the FortiSASE endpoint profile.
  • Exempt the Google Maps FQDN from the endpoint system proxy settings.
  • Configure a split-tunnel VPN policy using Google Maps FQDN to exclude and redirect the traffic.
Question 2 (Topic 1)

A FortiSASE administrator is configuring a Secure Private Access (SPA) solution to share endpoint information with a corporate FortiGate. Which three configuration actions will achieve this solution? (Choose three.)

Select an option, then click Submit answer.

  • Authorize the corporate FortiGate on FortiSASE as a ZTNA access proxy.
  • Use the FortiClient EMS cloud connector on the corporate FortiGate to connect to FortiSASE.
  • Apply the FortiSASE zero trust network access (ZTNA) license on the corporate FortiGate.
  • Add the FortiGate IP address in the secure private access configuration on FortiSASE.
  • Register FortiGate and FortiSASE under the same FortiCloud account.
Question 3 (Topic 1)

Your organization is currently using FortiSASE for its cybersecurity. They have recently hired a contractor who will work from the HQ office and who needs temporary internet access in order to set up a web-based point of sale (POS) system. What is the recommended way to provide internet access to the contractor?

Select an option, then click Submit answer.

  • Configure a VPN policy on FortiSASE to provide access to the internet.
  • Use FortiClient on the endpoint to manage internet access.
  • Use a proxy auto-configuration (PAC) file and provide secure web gateway (SWG) service as an explicit web proxy.
  • Use zero trust network access (ZTNA) and tag the client as an unmanaged endpoint.