Vcehome > Fortinet > NSE 6 Network Security Specialist > NSE6_FAC-6.1 > NSE6_FAC-6.1 Online Practice Questions and Answers

NSE6_FAC-6.1 Online Practice Questions and Answers

Questions 4

At a minimum, which two configurations are required to enable guest portal services on FortiAuthenticator? (Choose two)

A. Configuring a portal policy

B. Configuring at least on post-login service

C. Configuring a RADIUS client

D. Configuring an external authentication portal

Browse 30 Q&As
Questions 5

Which two types of digital certificates can you create in Fortiauthenticator? (Choose two)

A. Usercertificate

B. Organization validation certificate

C. Third-party root certificate

D. Local service certificate

Browse 30 Q&As
Questions 6

Which EAP method is known as the outer authentication method?

A. PEAP

B. EAP-GTC

C. EAP-TLS

D. MSCHAPV2

Browse 30 Q&As
Questions 7

Which three of the following can be used as SSO sources? (Choose three)

A. FortiClient SSO Mobility Agent

B. SSH Sessions

C. FortiAuthenticator in SAML SP role

D. Fortigate

E. RADIUS accounting

Browse 30 Q&As
Questions 8

How can a SAML metada file be used?

A. To defined a list of trusted user names

B. To import the required IDP configuration

C. To correlate the IDP address to its hostname

D. To resolve the IDP realm for authentication

Browse 30 Q&As
Questions 9

Which two statements about the self-service portal are true? (Choose two)

A. Self-registration information can be sent to the user through email or SMS

B. Realms can be used to configure which seld-registeredusers or groups can authenticate on the network

C. Administrator approval is required for all self-registration

D. Authenticating users must specify domain name along with username

Browse 30 Q&As
Questions 10

When you are setting up two FortiAuthenticator devices in active-passive HA, which HA role must you select on the masterFortiAuthenticator?

A. Active-passive master

B. Standalone master

C. Cluster member

D. Load balancing master

Browse 30 Q&As
Questions 11

Which interface services must be enabled for the SCEP client to connect to Authenticator?

A. OCSP

B. REST API

C. SSH

D. HTTP/HTTPS

Browse 30 Q&As
Questions 12

Which option correctly describes an SP-initiated SSO SAML packet flow for a host without a SAML assertion?

A. Service provider contacts idendity provider, idendity provider validates principal for service provider, service provider establishes communication with principal

B. Principal contacts idendity provider and is redirected to serviceprovider, principal establishes connection with service provider, service provider validates authentication with identify provider

C. Principal contacts service provider, service provider redirects principal to idendity provider, after succesfull authentication identify provider redirects principal to service provider

D. Principal contacts idendity provider and authenticates, identity provider relays principal to service provider after valid authentication

Browse 30 Q&As
Questions 13

Which two statement about the RADIUS service on FortiAuthenticator are true? (Choose two)

A. Two-factor authentication cannot be enforced when using RADIUS authentication

B. RADIUS users can migrated to LDAP users

C. Only local users can be authenticated through RADIUS

D. FortiAuthenticator answers only to RADIUS client that are registered with FortiAuthenticator

Browse 30 Q&As
Exam Code: NSE6_FAC-6.1
Exam Name: Fortinet NSE 6 - FortiAuthenticator 6.1
Last Update: May 12, 2024
Questions: 30 Q&As

PDF

$49.99

VCE

$59.99

PDF + VCE

$67.99