Exam4Training

Fortinet NSE6_FAC-6.1 Fortinet NSE 6 – FortiAuthenticator 6.1 Online Training

Question #1

Which of the following is an QATH-based standart to generate event-based, one-time password tokens?

  • A . OLTP
  • B . SOTP
  • C . HOTP
  • D . TOTP

Reveal Solution Hide Solution

Correct Answer: C
Question #2

Which two statement about the RADIUS service on FortiAuthenticator are true? (Choose two)

  • A . Two-factor authentication cannot be enforced when using RADIUS authentication
  • B . RADIUS users can migrated to LDAP users
  • C . Only local users can be authenticated through RADIUS
  • D . FortiAuthenticator answers only to RADIUS client that are registered with FortiAuthenticator

Reveal Solution Hide Solution

Correct Answer: B,D
Question #3

You want to monitor FortiAuthenticator system information and receive FortiAuthenticator traps through SNMP.

Which two configurations must be performed after enabling SNMP access on the FortiAuthenticator interface? (Choose two)

  • A . Enable logging services
  • B . Set the tresholds to trigger SNMP traps
  • C . Upload management information base (MIB) files to SNMP server
  • D . Associate an ASN, 1 mapping rule to the receiving host

Reveal Solution Hide Solution

Correct Answer: B,C
Question #4

Which statement about the guest portal policies is true?

  • A . Guest portal policies apply only to authentication requests coming from unknown RADIUS clients
  • B . Guest portal policies can be used only for BYODs
  • C . Conditions in the policy apply only to guest wireless users
  • D . All conditions in the policy must match before a user is presented with the guest portal

Reveal Solution Hide Solution

Correct Answer: D
Question #5

Which three of the following can be used as SSO sources? (Choose three)

  • A . FortiClient SSO Mobility Agent
  • B . SSH Sessions
  • C . FortiAuthenticator in SAML SP role
  • D . Fortigate
  • E . RADIUS accounting

Reveal Solution Hide Solution

Correct Answer: A,C,E
Question #6

Which behaviors exist for certificate revocation lists (CRLs) on FortiAuthenticator? (Choose two)

  • A . CRLs contain the serial number of the certificate that has been revoked
  • B . Revoked certificates are automaticlly placed on the CRL
  • C . CRLs can beexported only through the SCEP server
  • D . All local CAs share the same CRLs

Reveal Solution Hide Solution

Correct Answer: A,B
Question #7

You are the administrator of a large network that includes a large local user datadabase on

the current Fortiauthenticatior. You want to import all the local users into a new Fortiauthenticator device.

Which method should you use to migrate the local users?

  • A . Import users using RADIUS accounting updates.
  • B . Import the current directory structure.
  • C . Import users fromRADUIS.
  • D . Import users using a CSV file.

Reveal Solution Hide Solution

Correct Answer: D
Question #8

Which two statements about the self-service portal are true? (Choose two)

  • A . Self-registration information can be sent to the user through email or SMS
  • B . Realms can be used to configure which seld-registeredusers or groups can authenticate on the network
  • C . Administrator approval is required for all self-registration
  • D . Authenticating users must specify domain name along with username

Reveal Solution Hide Solution

Correct Answer: A,B
Question #9

Which two protocols are the default management access protocols for administrative access for FortiAuthenticator? (Choose two)

  • A . Telnet
  • B . HTTPS
  • C . SSH
  • D . SNMP

Reveal Solution Hide Solution

Correct Answer: B,C
Question #10

What are three key features of FortiAuthenticator? (Choose three)

  • A . Identity management device
  • B . Log server
  • C . Certificate authority
  • D . Portal services
  • E . RSSO Server

Reveal Solution Hide Solution

Correct Answer: A,C,D
Exit mobile version