2023 New NSE6_FAC-6.1 Dumps - Real Fortinet Exam Questions [Q15-Q40]

Share

2023 New NSE6_FAC-6.1 Dumps - Real Fortinet Exam Questions

Dependable NSE6_FAC-6.1 Exam Dumps to Become Fortinet Certified

NEW QUESTION # 15
What are three key features of FortiAuthenticator? (Choose three)

  • A. Identity management device
  • B. RSSO Server
  • C. Portal services
  • D. Log server
  • E. Certificate authority

Answer: A,C,E


NEW QUESTION # 16
You are the administrator of a large network that includes a large local user datadabase on the current Fortiauthenticatior. You want to import all the local users into a new Fortiauthenticator device.
Which method should you use to migrate the local users?

  • A. Import users using a CSV file.
  • B. Import users fromRADUIS.
  • C. Import users using RADIUS accounting updates.
  • D. Import the current directory structure.

Answer: A


NEW QUESTION # 17
Which two types of digital certificates can you create in Fortiauthenticator? (Choose two)

  • A. Third-party root certificate
  • B. Local service certificate
  • C. Usercertificate
  • D. Organization validation certificate

Answer: B,C


NEW QUESTION # 18
Which two capabilities does FortiAuthenticator offer when acting as a self-signed or local CA? (Choose two)

  • A. Creating, signing, and revoking of X.509 certificates
  • B. Merging local and remote CRLs using SCEP
  • C. Importing other CA certificates and CRLs
  • D. Validating other CA CRLs using OSCP

Answer: A,C


NEW QUESTION # 19
Which two are supported captive or guest portal authentication methods? (Choose two)

  • A. Email
  • B. Linkedln
  • C. Instagram
  • D. Apple ID

Answer: A,B


NEW QUESTION # 20
Which two SAML roles can Fortiauthenticator be configured as? (Choose two)

  • A. Service provider
  • B. Idendity provider
  • C. Assertion server
  • D. Principal

Answer: A,B


NEW QUESTION # 21
Which network configuration is required when deploying FortiAuthenticator for portal services?

  • A. FortiAuthenticator must have the REST API access enable on port1
  • B. Fortigate must be setup as default gateway for FortiAuthenticator
  • C. Policies must have specific ports open between FortiAuthenticator and the authentication clients
  • D. One of the DNS servers must be a FortiGuard DNS server

Answer: C


NEW QUESTION # 22
Which three of the following can be used as SSO sources? (Choose three)

  • A. FortiClient SSO Mobility Agent
  • B. SSH Sessions
  • C. FortiAuthenticator in SAML SP role
  • D. Fortigate
  • E. RADIUS accounting

Answer: A,C,E


NEW QUESTION # 23
Which two statements about the EAP-TTLS authentication method are true? (Choose two)

  • A. Uses digital certificates only on the server side
  • B. Support a port access control (wired) solution only
  • C. Uses mutualauthentication
  • D. Requires an EAP server certificate

Answer: A,D


NEW QUESTION # 24
Which method is the most secure way of delivering FortiToken data once the token has been seeded?

  • A. Automatic token generation using FortiAuthenticator
  • B. Shipment of the seed files on a CD using a tamper-evident envelope
  • C. Using the in-house token provisioning tool
  • D. Online activation of the tokens through the FortiGuard network

Answer: B


NEW QUESTION # 25
Which option correctly describes an SP-initiated SSO SAML packet flow for a host without a SAML assertion?

  • A. Principal contacts service provider, service provider redirects principal to idendity provider, after succesfull authentication identify provider redirects principal to service provider
  • B. Principal contacts idendity provider and authenticates, identity provider relays principal to service provider after valid authentication
  • C. Service provider contacts idendity provider, idendity provider validates principal for service provider, service provider establishes communication with principal
  • D. Principal contacts idendity provider and is redirected to serviceprovider, principal establishes connection with service provider, service provider validates authentication with identify provider

Answer: A


NEW QUESTION # 26
Which two features of FortiAuthenticator are used for EAP deployment? (Choose two)

  • A. LDAP server
  • B. RADIUS server
  • C. MAC authentication bypass
  • D. Certificate authority

Answer: B,D


NEW QUESTION # 27
......


Earning the Fortinet NSE6_FAC-6.1 certification is an excellent way for IT professionals to demonstrate their expertise in FortiAuthenticator solutions and enhance their career prospects. Certified individuals are recognized as experts in their field and are in high demand by employers looking for professionals who can design, deploy, and manage FortiAuthenticator solutions to protect their networks from cyber threats.

 

Get Ready with NSE6_FAC-6.1 Exam Dumps (2023): https://www.actualtestsit.com/Fortinet/NSE6_FAC-6.1-exam-prep-dumps.html