nerdexam
Fortinet

FCSS_SASE_AD-24 · Question #19

What are two advantages of using zero-trust tags? (Choose two.)

The correct answer is A. Zero-trust tags can be used to allow or deny access to network resources B. Zero-trust tags can determine the security posture of an endpoint. Zero-trust tags are critical in implementing zero-trust network access (ZTNA) policies. Here are the two key advantages of using zero-trust tags: Access Control (Allow or Deny): Zero-trust tags can be used to define policies that either allow or deny access to specific network…

Zero Trust Network Access (ZTNA)

Question

What are two advantages of using zero-trust tags? (Choose two.)

Options

  • AZero-trust tags can be used to allow or deny access to network resources
  • BZero-trust tags can determine the security posture of an endpoint.
  • CZero-trust tags can be used to create multiple endpoint profiles which can be applied to different
  • DZero-trust tags can be used to allow secure web gateway (SWG) access

How the community answered

(30 responses)
  • A
    80% (24)
  • C
    7% (2)
  • D
    13% (4)

Explanation

Zero-trust tags are critical in implementing zero-trust network access (ZTNA) policies. Here are the two key advantages of using zero-trust tags: Access Control (Allow or Deny): Zero-trust tags can be used to define policies that either allow or deny access to specific network resources based on the tag associated with the user or device. This granular control ensures that only authorized users or devices with the appropriate tags can access sensitive resources, thereby enhancing security. Determining Security Posture: Zero-trust tags can be utilized to assess and determine the security posture of an endpoint. Based on the assigned tags, FortiSASE can evaluate the device's compliance with security policies, such as antivirus status, patch levels, and configuration settings. Devices that do not meet the required security posture can be restricted from accessing the network or given limited

Topics

#zero-trust tags#endpoint security posture#ZTNA#network access control

Community Discussion

No community discussion yet for this question.

Full FCSS_SASE_AD-24 Practice