View all questions & answers for the FCSS - FortiSASE 24 Administrator Exam Materials exam


Question 33 Discussion

Which policy type is used to control traffic between the FortiClient endpoint to FortiSASE for secure internet access? (Choose one answer)

  • A. VPN policy
  • B. thin edge policy
  • C. private access policy
  • D. secure web gateway (SWG) policy
Correct Answer: A

Brave-Dump Clients Votes

A 100%

Comments



Abdelrahman Ahmed 2025-04-18 14:44:24

Selected Answers: A


In endpoint mode, FortiClient connects to FortiSASE using a secure SSL VPN tunnel. Once the connection is
established, FortiSASE acts as a firewall and is placed between the endpoint and the internet. The VPN policy
on FortiSASE is configured with the required security components, such as web filter, application control, and
so on, to secure the internet traffic. Endpoint mode also supports configuring zero trust network access
(ZTNA) for compliance checks.

Secure web gateway mode is an agentless deployment for remote users. Remote users configure FortiSASE
as an explicit web proxy through their web browser or by using a proxy autoconfiguration (PAC) file. IT
administrators can push a PAC file to the end user by using a group policy object (GPO). FortiSASE supports
a Google Chrome extension that allows you to enforce SWG connectivity for selected endpoints with the
Google Chrome browser installed, including Chromebooks, based on the endpoint OS and the corresponding
extension policy that the Google Workspace administrator configured. The web browser redirects HTTP and
HTTPS traffic to FortiSASE, which secures user web traffic by implementing SWG security policies. All other
non-web traffic bypasses FortiSASE and is forwarded directly to the internet.


on the question "Ask about Forticlient" means endpoint mode


Syed Muhammed Usman 2025-05-16 20:36:33

Selected Answers: A


This policy type enables secure access to internal resources without requiring a full VPN tunnel, using Zero Trust Network Access (ZTNA) principles