Fortinet NSE7_SSE_AR-26 Prüfungsthemen:
| Abschnitt | Ziele |
|---|---|
| Thema 1: FortiSASE Architektur und Design | - Entwurf eines sicheren privaten Zugangs (SPA) - Auswahl geeigneter Bereitstellungsmodelle - Entwurf eines sicheren SaaS-Zugangs (SSA) - Entwurf eines sicheren Internetzugangs (SIA) |
| Thema 2: Betrieb und Fehlerbehebung | - Fehlerbehebung bei Bereitstellung und Konnektivität - Überwachung und Analytik - Zentralisierte Verwaltung - Protokollanalyse |
| Thema 3: Richtlinien und Sicherheitsdienste | - Webfilterung - Anwendungssteuerung - Entwurf von Sicherheitsrichtlinien - DNS-Filterung - Bedrohungsschutz |
| Thema 4: Identität und Zugriff | - Authentifizierung und Identitätsanbieter - Zero Trust Network Access (ZTNA) - Gerätestatus und Konformität |
| Thema 5: Integration | - SD-WAN-Integration - FortiGate-Integration - Unternehmensnetzwerkszenarien |
Fortinet NSE 7 - FortiSASE 26 Architect NSE7_SSE_AR-26 Prüfungsfragen mit Lösungen
Refer to the exhibit.
You want to configure SD-WAN on a network, as shown in the exhibit.
The network contains many FortiGate devices. Some are used as next-generation firewalls (NGFW), and some are installed with extensions such as FortiSwitch, FortiAP, or FortiExtender.
Which factors should you consider when planning your deployment?
- A. You can build an SD-WAN topology that includes all devices. You must define multiple regions and group devices by extension type.
- B. You can build an SD-WAN topology that includes all devices. The hubs can be FortiGate devices with FortiExtender.
- C. You should exclude the FortiGate devices with two types of extensions from the SD-WAN topology.
- D. You should build multiple SD-WAN topologies. Each topology should contain only one type of extension.
Antwort: B 🗳️
Erklärung: (Nur für DeutschPrüfung-Mitglieder sichtbar)
Which two components are part of onboarding a proxy-based endpoint for secure internet access (SIA)? (Choose two.)
- A. FortiClient software
- B. Proxy auto-configuration (PAC) file
- C. Tunnel policy
- D. FortiSASE certificate authority (CA) certificate
Antwort: B,D 🗳️
Erklärung: (Nur für DeutschPrüfung-Mitglieder sichtbar)
Which two statements about on-ramp tunnels on FortiSASE are correct? (Choose two.)
- A. Only FortiExtender and FortiAP devices are supported for on-ramp tunnels.
- B. The branch on-ramp and secure private access (SPA) features share the same BGP configuration.
- C. SSL deep inspection for site-based users is fully functional without installing the FortiSASE certificate authority certificate.
- D. A branch device can connect to two or more on-ramp locations.
Antwort: B,D 🗳️
Erklärung: (Nur für DeutschPrüfung-Mitglieder sichtbar)
An administrator wants to ensure that voice and video traffic receive priority treatment across the SD-WAN overlay used by FortiSASE. Which feature should be configured?
- A. Passive health-check probing
- B. Traffic shaping policies with SD-WAN rules referencing application signatures
- C. ZTNA tag-based access control
- D. Forward error correction only
Antwort: B 🗳️
Erklärung: (Nur für DeutschPrüfung-Mitglieder sichtbar)
An existing FortiSASE customer has a third-party router in a remote office and wants to secure internet access for users at that location. Which add-on license is required to enable this setup?
- A. FortiSASE global add-on
- B. FortiSASE Secure Private Access (SPA) add-on
- C. FortiSASE secure web gateway (SWG) add-on
- D. FortiSASE branch on-ramp add-on
Antwort: D 🗳️
Erklärung: (Nur für DeutschPrüfung-Mitglieder sichtbar)






2 Kundenbewertungen

