Which two components are part of onboarding a secure web gateway (SWG) endpoint? (Choose two)
Correct Answer:AB
Onboarding a Secure Web Gateway (SWG) endpoint involves several components to
ensure secure and effective integration with FortiSASE. Two key components are the FortiSASE CA certificate and the proxy auto-configuration (PAC) file.
✑ FortiSASE CA Certificate:
✑ Proxy Auto-Configuration (PAC) File:
References:
✑ FortiOS 7.2 Administration Guide: Details on onboarding endpoints and configuring SWG.
✑ FortiSASE 23.2 Documentation: Explains the components required for integrating endpoints with FortiSASE and the process for deploying the CA certificate and PAC file.
Refer to the exhibit.
The daily report for application usage shows an unusually high number of unknown applications by category.
What are two possible explanations for this? (Choose two.)
Correct Answer:AD
The unusually high number of unknown applications by category in the daily report for application usage can be attributed to the following reasons:
✑ Certificate Inspection is not being used to scan application traffic:
✑ Deep Inspection is not being used to scan traffic:
References:
✑ FortiOS 7.2 Administration Guide: Details on certificate inspection and deep inspection configurations.
✑ FortiSASE 23.2 Documentation: Explains the importance of deep inspection and certificate inspection in accurate application identification.
When deploying FortiSASE agent-based clients, which three features are available compared to an agentless solution? (Choose three.)
Correct Answer:ABD
When deploying FortiSASE agent-based clients, several features are available that are not typically available with an agentless solution. These features enhance the security and management capabilities for endpoints.
✑ Vulnerability Scan:
✑ SSL Inspection:
✑ Web Filter:
References:
✑ FortiOS 7.2 Administration Guide: Explains the features and benefits of deploying agent-based clients.
✑ FortiSASE 23.2 Documentation: Details the differences between agent-based and agentless solutions and the additional features provided by agent-based deployments.
Refer to the exhibit.
To allow access, which web tiller configuration must you change on FortiSASE?
Correct Answer:C
The exhibit indicates that the URLhttps://www.bbc.com/is being blocked due to containing a banned word ("fight"). To allow access to this specific URL, you need to adjust the URL filter settings on FortiSASE.
✑ URL Filtering:
✑ Modifying URL Filter:
References:
✑ FortiOS 7.2 Administration Guide: Provides details on configuring and managing URL filters.
✑ FortiSASE 23.2 Documentation: Explains how to set up and modify web filtering policies, including URL filters.