Fortinet
NSE7_ZTA-7.2
Q1:
Which three statements are true about zero-trust telemetry compliance1? (Choose three.)
☐
A
FortiClient EMS creates dynamic policies using ZTNAtags☐
B
FortiChent checks the endpoint using the ZTNAtags provided by FortiClient EMS☐
C
ZTNA tags are configured in FortiClient, based on criteria such as certificates and the logged in domain☐
D
FortiOS provides network access to the endpoint based on the zero-trust tagging rules☐
E
FortiClient EMS sends the endpoint information received through FortiClient Telemetry to FortiOS
Fortinet
NSE7_ZTA-7.2
Q2:
Which three statements are true about a persistent agent? (Choose three.)
☐
A
Agent is downloaded and run from captive portal☐
B
Supports advanced custom scans and software inventory.☐
C
Can apply supplicant configuration to a host☐
D
Deployed by a login/logout script and is not installed on the endpoint☐
E
Can be used for automatic registration and authentication
Fortinet
NSE7_ZTA-7.2
Q3:
In which FortiNAC configuration stage do you define endpoint compliance?
○
A
Device onboarding○
B
Management configuration○
C
Policy configuration○
D
Network modeling
Fortinet
NSE7_ZTA-7.2
Q4:
exhibit.

User student is not able to log in to SSL VPN
Given the output showing a real-time debug: which statement describes the login failure?
○
A
Unable to verify chain of trust for the peer certificate○
B
CN does not match the user peer configuration○
C
student is not part of the usergroup SSL_VPN_Users.○
D
Client certificate has expired
Fortinet
NSE7_ZTA-7.2
Q5:
With the increase in loT devices, which two challenges do enterprises face? (Choose two.)
☐
A
Bandwidth consumption due to added overhead of loT☐
B
Maintaining a high performance network☐
C
Unpatched vulnerabilities in loT devices☐
D
Achieving full network visibility