FCSS_SASE_AD-23: FCSS FortiSASE 23 Administrator Endpoint Practice Questions
The free FCSS_SASE_AD-23: FCSS FortiSASE 23 Administrator questions that deal with endpoint, with answers and explanations. The full bank and the timed practice test cover every topic the exam asks about.
Question #5
Which policy type is used to control traffic between the FortiClient endpoint to FortiSASE for secure internet access?
Correct answer: D
Explanation
The Secure Web Gateway (SWG) policy is used to control traffic between the FortiClient endpoint and FortiSASE for secure internet access. SWG provides comprehensive web security by enforcing policies that manage and monitor user access to the internet. • Secure Web Gateway (SWG) Policy: • Traffic Control: References: • FortiOS 7.2 Administration Guide: Details on configuring and managing SWG policies. • FortiSASE 23.2 Documentation: Explains the role of SWG in securing internet access for endpoints.
Question #6
Which two components are part of onboarding a secure web gateway (SWG) endpoint? (Choose two)
Select 2 answers.
Correct answer: A, B
Explanation
Onboarding a Secure Web Gateway (SWG) endpoint involves several components to ensure secure and effective integration with FortiSASE. Two key components are the FortiSASE CA certificate and the proxy auto-configuration (PAC) file. • FortiSASE CA Certificate: • Proxy Auto-Configuration (PAC) File: References: • FortiOS 7.2 Administration Guide: Details on onboarding endpoints and configuring SWG. • FortiSASE 23.2 Documentation: Explains the components required for integrating endpoints with FortiSASE and the process for deploying the CA certificate and PAC file.
Question #7
Refer to the exhibit. A company has a requirement to inspect all the endpoint internet traffic on FortiSASE, and exclude Google Maps traffic from the FortiSASE VPN tunnel and redirect it to the endpoint physical Interface. Which configuration must you apply to achieve this requirement?

Correct answer: C
Explanation
To meet the requirement of inspecting all endpoint internet traffic on FortiSASE while excluding Google Maps traffic from the FortiSASE VPN tunnel and redirecting it to the endpoint's physical interface, you should configure split tunneling. Split tunneling allows specific traffic to bypass the VPN tunnel and be routed directly through the endpoint's local interface. • Split Tunneling Configuration: • Implementation Steps: References: • FortiOS 7.2 Administration Guide: Provides details on split tunneling configuration. • FortiSASE 23.2 Documentation: Explains how to set up and manage split tunneling for specific destinations.
Continue with FCSS_SASE_AD-23: FCSS FortiSASE 23 Administrator
Unlock the full question bank
You have read the first 10 questions. A subscription opens every question in FCSS_SASE_AD-23: FCSS FortiSASE 23 Administrator, the full timed practice test, and your progress and weak-topic reporting.
Single exam
$19.99for 30 days
Full question bank and practice test for one exam, for 30 days.
Single exam
$49.99for 1 year
One exam for a full year. Nothing renews and nothing to cancel.
Full access
$39.99/mo
Every exam in the catalogue, month to month.
Full access
$199.99/yr
Every exam in the catalogue for a year.
Already subscribed? Sign in to pick up where you left off.
All FCSS_SASE_AD-23: FCSS FortiSASE 23 Administrator practice questions →
