Get 100% Success with Latest NSE 6 Network Security Specialist NSE6_FAC-6.1 Exam Dumps Feb 08, 2023 [Q15-Q30]

Share

Get 100% Success with Latest NSE 6 Network Security Specialist NSE6_FAC-6.1 Exam Dumps Feb 08, 2023

The Best NSE6_FAC-6.1 Exam Study Material and Preparation Test Question Dumps

NEW QUESTION 15
Which two protocols are the default management access protocols for administrative access for FortiAuthenticator? (Choose two)

  • A. HTTPS
  • B. SSH
  • C. Telnet
  • D. SNMP

Answer: A,B

 

NEW QUESTION 16
How can a SAML metada file be used?

  • A. To import the required IDP configuration
  • B. To correlate the IDP address to its hostname
  • C. To resolve the IDP realm for authentication
  • D. To defined a list of trusted user names

Answer: A

 

NEW QUESTION 17
Which two statement about the RADIUS service on FortiAuthenticator are true? (Choose two)

  • A. Only local users can be authenticated through RADIUS
  • B. FortiAuthenticator answers only to RADIUS client that are registered with FortiAuthenticator
  • C. Two-factor authentication cannot be enforced when using RADIUS authentication
  • D. RADIUS users can migrated to LDAP users

Answer: B,D

 

NEW QUESTION 18
Which two are supported captive or guest portal authentication methods? (Choose two)

  • A. Instagram
  • B. Email
  • C. Apple ID
  • D. Linkedln

Answer: B,D

 

NEW QUESTION 19
You are a Wi-Fi provider and host multiple domains. How do you delegate user accounts, user groups and permissions per domain when theyare authenticating on a single FortiAuthenticator device?

  • A. Create multiple directory trees on FortiAuthenticator
  • B. Create user groups
  • C. Create realms
  • D. Automatically import hosts from each domain as they authenticate

Answer: C

 

NEW QUESTION 20
When you are setting up two FortiAuthenticator devices in active-passive HA, which HA role must you select on the masterFortiAuthenticator?

  • A. Cluster member
  • B. Standalone master
  • C. Load balancing master
  • D. Active-passive master

Answer: A

 

NEW QUESTION 21
You want to monitor FortiAuthenticator system information and receive FortiAuthenticator traps through SNMP.
Which two configurations must be performed after enabling SNMP access on the FortiAuthenticator interface?
(Choose two)

  • A. Upload management information base (MIB) files to SNMP server
  • B. Set the tresholds to trigger SNMP traps
  • C. Enable logging services
  • D. Associate an ASN, 1 mapping rule to the receiving host

Answer: A,B

 

NEW QUESTION 22
A device or useridentity cannot be established transparently, such as with non-domain BYOD devices, and allow users to create their own credentialis.
In this case, which user idendity discovery method can Fortiauthenticator use?

  • A. Portal authentication
  • B. Syslog messaging or SAML IDP
  • C. Radius accounting
  • D. Kerberos-base authentication

Answer: A

 

NEW QUESTION 23
Which interface services must be enabled for the SCEP client to connect to Authenticator?

  • A. SSH
  • B. HTTP/HTTPS
  • C. OCSP
  • D. REST API

Answer: B

 

NEW QUESTION 24
Which two capabilities does FortiAuthenticator offer when acting as a self-signed or local CA? (Choose two)

  • A. Merging local and remote CRLs using SCEP
  • B. Importing other CA certificates and CRLs
  • C. Validating other CA CRLs using OSCP
  • D. Creating, signing, and revoking of X.509 certificates

Answer: B,D

 

NEW QUESTION 25
Refer to the exhibit.
Examine the screenshot shown in the exhibit.

Which two statements regarding the configuration are true? (Choose two)

  • A. Guest user account will expire after eight hours
  • B. All accounts registered through the guest portal must be validated through email
  • C. All guest accounts created using the account registration feature will be placed under the Guest_Portal_Users group
  • D. Guest users must fill in all the fields on the registration form

Answer: B,C

 

NEW QUESTION 26
Which two statements about the self-service portal are true? (Choose two)

  • A. Administrator approval is required for all self-registration
  • B. Self-registration information can be sent to the user through email or SMS
  • C. Authenticating users must specify domain name along with username
  • D. Realms can be used to configure which seld-registeredusers or groups can authenticate on the network

Answer: B,D

 

NEW QUESTION 27
......

Get Ready to Pass the NSE6_FAC-6.1 exam Right Now Using Our NSE 6 Network Security Specialist Exam Package: https://www.lead2passexam.com/Fortinet/valid-NSE6_FAC-6.1-exam-dumps.html