Fortinet NSE6_FAC-6.1 Exam Overview:
| Certification Vendor: | Fortinet |
|---|---|
| Exam Name: | Fortinet NSE 6 - FortiAuthenticator 6.1 |
| Exam Number: | NSE6_FAC-6.1 |
| Passing Score: | 70% |
| Exam Duration: | 60 minutes |
| Certificate Validity Period: | 2 years |
| Related Certifications: | NSE 7 Network Security Architect NSE 4 Network Security Professional |
| Available Languages: | English |
| Real Exam Qty: | 30 |
| Exam Price: | $200 USD |
| Exam Format: | Multiple Select, Multiple Choice |
| Recommended Training: | FortiAuthenticator 6.1 Administration |
| Exam Registration: | Fortinet Training Portal Pearson VUE Registration |
| Sample Questions: | Fortinet NSE6_FAC-6.1 Sample Questions |
| Exam Way: | Online proctored or onsite at Pearson VUE test centers |
| Pre Condition: | NSE 4 certification or equivalent networking/security experience recommended |
| Official Syllabus URL: | https://training.fortinet.com/ |
Fortinet NSE6_FAC-6.1 Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| Troubleshooting and Monitoring | 10% | - Logging, reporting, and diagnostics - System maintenance and upgrades - Common authentication and integration issues |
| Authentication Services | 25% | - Local, LDAP, and RADIUS authentication - Portal authentication and self-service - 802.1X and MAC-based authentication - Multi-factor authentication and FortiTokens |
| Fortinet Single Sign-On (FSSO) | 15% | - Integration with FortiGate - RSSO and transparent authentication - FSSO agent configuration |
| Certificate Management | 20% | - Local Certificate Authority (CA) setup - Certificate issuance, renewal, and revocation - SCEP and OCSP integration |
| FortiAuthenticator Overview and Architecture | 15% | - Initial setup and configuration - System components and deployment modes - High availability and clustering |
| SAML and Federation Services | 15% | - SAML Service Provider (SP) integration - SAML Identity Provider (IdP) configuration - SSO workflows and attribute mapping |
Fortinet NSE 6 - FortiAuthenticator 6.1 Sample Questions:
Which option correctly describes an SP-initiated SSO SAML packet flow for a host without a SAML assertion?
- A. Principal contacts idendity provider and is redirected to serviceprovider, principal establishes connection with service provider, service provider validates authentication with identify provider
- B. Service provider contacts idendity provider, idendity provider validates principal for service provider, service provider establishes communication with principal
- C. Principal contacts service provider, service provider redirects principal to idendity provider, after succesfull authentication identify provider redirects principal to service provider
- D. Principal contacts idendity provider and authenticates, identity provider relays principal to service provider after valid authentication
Correct Answer: C 🗳️
Which statement about the guest portal policies is true?
- A. All conditions in the policy must match before a user is presented with the guest portal
- B. Conditions in the policy apply only to guest wireless users
- C. Guest portal policies can be used only for BYODs
- D. Guest portal policies apply only to authentication requests coming from unknown RADIUS clients
Correct Answer: A 🗳️
Which two SAML roles can Fortiauthenticator be configured as? (Choose two)
- A. Principal
- B. Idendity provider
- C. Service provider
- D. Assertion server
Correct Answer: B,C 🗳️
Which two are supported captive or guest portal authentication methods? (Choose two)
- A. Linkedln
- B. Apple ID
- C. Instagram
- D. Email
Correct Answer: A,D 🗳️
We're so confident of our products that we provide no hassle product exchange.


By Chasel

