NSE4 · Question #113
A client can create a secure connection to a FortiGate device using SSL VPN in web-only mode. Which one of the following statements is correct regarding the use of web-only mode SSL VPN?
The correct answer is C. Web-only mode requires the user to have a web browser that supports 64-bit cipher length. Web-only mode SSL VPN is a clientless solution that requires only a compatible web browser with sufficient cryptographic capabilities.
Question
A client can create a secure connection to a FortiGate device using SSL VPN in web-only mode. Which one of the following statements is correct regarding the use of web-only mode SSL VPN?
Options
- AWeb-only mode supports SSL version 3 only.
- BA Fortinet-supplied plug-in is required on the web client to use web-only mode SSL VPN.
- CWeb-only mode requires the user to have a web browser that supports 64-bit cipher length.
- DThe JAVA run-time environment must be installed on the client to be able to connect to a web-
How the community answered
(37 responses)- A3% (1)
- B3% (1)
- C89% (33)
- D5% (2)
Why each option
Web-only mode SSL VPN is a clientless solution that requires only a compatible web browser with sufficient cryptographic capabilities.
Web-only mode SSL VPN supports modern TLS versions, not just the outdated and insecure SSL version 3.
Web-only mode is clientless, meaning it does not require a Fortinet-supplied plug-in on the client device.
Web-only mode SSL VPN leverages the web browser's capabilities, requiring a browser that supports adequate cipher lengths to establish a secure SSL/TLS connection.
The JAVA run-time environment is not required for web-only mode SSL VPN, as it relies solely on standard browser features.
Concept tested: SSL VPN web-only mode requirements
Source: https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/181555/ssl-vpn-modes
Topics
Community Discussion
No community discussion yet for this question.