A customer wants to upgrade their legacy on-premises proxy to a could-based proxy for a hybrid network. Which FortiSASE features would help the customer to achieve this outcome?
Correct Answer:
D
For a customer looking to upgrade their legacy on-premises proxy to a cloud- based proxy for a hybrid network, the combination of Secure Web Gateway (SWG) and Inline Cloud Access Security Broker (CASB) features in FortiSASE will provide the necessary capabilities.
✑ Secure Web Gateway (SWG):
✑ Inline Cloud Access Security Broker (CASB):
References:
✑ FortiOS 7.2 Administration Guide: Details on SWG and CASB features.
✑ FortiSASE 23.2 Documentation: Explains how SWG and inline-CASB are used in cloud-based proxy solutions.
You are designing a new network for Company X and one of the new cybersecurity policy requirements is that all remote user endpoints must always be connected and protected Which FortiSASE component facilitates this always-on security measure?
Correct Answer:
C
The unified FortiClient component of FortiSASE facilitates the always-on security measure required for ensuring that all remote user endpoints are always connected and protected.
✑ Unified FortiClient:
✑ Always-On Security:
References:
✑ FortiOS 7.2 Administration Guide: Provides information on configuring and managing FortiClient for endpoint security.
✑ FortiSASE 23.2 Documentation: Explains how FortiClient integrates with
FortiSASE to deliver always-on security for remote endpoints.
Which two components are part of onboarding a secure web gateway (SWG) endpoint? (Choose two)
Correct Answer:
AB
Onboarding a Secure Web Gateway (SWG) endpoint involves several components to ensure secure and effective integration with FortiSASE. Two key components are the FortiSASE CA certificate and the proxy auto-configuration (PAC) file.
✑ FortiSASE CA Certificate:
✑ Proxy Auto-Configuration (PAC) File:
References:
✑ FortiOS 7.2 Administration Guide: Details on onboarding endpoints and configuring SWG.
✑ FortiSASE 23.2 Documentation: Explains the components required for integrating endpoints with FortiSASE and the process for deploying the CA certificate and PAC file.
Which secure internet access (SIA) use case minimizes individual workstation or device setup, because you do not need to install FortiClient on endpoints or configure explicit web proxy settings on web browser-based end points?
Correct Answer:
B
The Secure Internet Access (SIA) use case that minimizes individual workstation or device setup is SIA for agentless remote users. This use case does not require installing FortiClient on endpoints or configuring explicit web proxy settings on web browser-based endpoints, making it the simplest and most efficient deployment.
✑ SIA for Agentless Remote Users:
✑ Minimized Setup:
References:
✑ FortiOS 7.2 Administration Guide: Details on different SIA deployment use cases and configurations.
✑ FortiSASE 23.2 Documentation: Explains how SIA for agentless remote users is implemented and the benefits it provides.
A FortiSASE administrator is configuring a Secure Private Access (SPA) solution to share endpoint information with a corporate FortiGate.
Which three configuration actions will achieve this solution? (Choose three.)
Correct Answer:
BCD
References:
✑ FortiOS 7.2 Administration Guide: Provides details on configuring Secure Private Access and integrating with FortiGate.
✑ FortiSASE 23.2 Documentation: Explains how to set up and manage connections between FortiSASE and corporate FortiGate.