Fortinet FCSS_SASE_AD-23 - FCSS - FortiSASE 23 Administrator Exam
Page: 3 / 11
Total 54 questions
Question #11 (Topic: Exam A)
An organization needs to resolve internal hostnames using its internal rather than public DNS servers for remotely connected endpoints.
Which two components must be configured on FortiSASE to achieve this? (Choose two.)
Which two components must be configured on FortiSASE to achieve this? (Choose two.)
A. SSL deep inspection
B. Split DNS rules
C. Split tunneling destinations
D. DNS filter
Answer: AB
Question #12 (Topic: Exam A)
Refer to the exhibit.

In the user connection monitor, the FortiSASE administrator notices the user name is showing random characters.
Which configuration change must the administrator make to get proper user information?

In the user connection monitor, the FortiSASE administrator notices the user name is showing random characters.
Which configuration change must the administrator make to get proper user information?
A. Turn off log anonymization on FortiSASE.
B. Add more endpoint licenses on FortiSASE.
C. Configure the username using FortiSASE naming convention.
D. Change the deployment type from SWG to VPN.
Answer: A
Question #13 (Topic: Exam A)
Which FortiSASE feature ensures least-privileged user access to all applications?
A. secure web gateway (SWG)
B. SD-WAN
C. zero trust network access (ZTNA)
D. thin branch SASE extension
Answer: C
Question #14 (Topic: Exam A)
When you configure FortiSASE Secure Private Access (SPA) with SD-WAN integration, you must establish a routing adjacency between FortiSASE and the FortiGate SD-WAN hub.
Which routing protocol must you use?
Which routing protocol must you use?
A. BGP
B. IS-IS
C. OSPF
D. EIGRP
Answer: A
Question #15 (Topic: Exam A)
During FortiSASE provisioning, how many security points of presence (POPs) need to be configured by the FortiSASE administrator?
A. 1
B. 2
C. 3
D. 4
Answer: B