Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet Exam NSE6_FAC-6.4 Topic 3 Question 34 Discussion

Actual exam question for Fortinet's NSE6_FAC-6.4 exam
Question #: 34
Topic #: 3
[All NSE6_FAC-6.4 Questions]

You have implemented two-factor authentication to enhance security to sensitive enterprise systems.

How could you bypass the need for two-factor authentication for users accessing form specific secured networks?

Show Suggested Answer Hide Answer
Suggested Answer: B, C

EAP-TTLS is an authentication method that uses digital certificates only on the server side to establish a secure tunnel between the server and the client. The client does not need a certificate but can use any inner authentication method supported by the server, such as PAP, CHAP, MS-CHAP, or EAP-MD5. EAP-TTLS requires an EAP server certificate that is issued by a trusted CA and installed on the FortiAuthenticator device acting as the EAP server. EAP-TTLS supports both wireless and wired solutions for port access control. Reference: https://docs.fortinet.com/document/fortiauthenticator/6.4/administration-guide/372412/eap-ttls


Contribute your Thoughts:

Portia
2 months ago
Wait, I thought the exam was supposed to be testing my security skills, not my ability to find loopholes. Might as well just give me a lock-picking kit and call it a day.
upvoted 0 times
...
Becky
2 months ago
Hmm, let me guess - the correct answer is the one that doesn't involve the words 'bypass' or 'two-factor authentication'? Just a hunch.
upvoted 0 times
Tyisha
14 days ago
C) Enable Adaptive Authentication in the portal policy
upvoted 0 times
...
Una
19 days ago
B) Specify the appropriate RADIUS clients in the authentication policy
upvoted 0 times
...
Vicente
22 days ago
A) Create an admin realm in the authentication policy
upvoted 0 times
...
...
Lizette
2 months ago
Wow, this question is like a treasure hunt for hackers. I think I'll just stick to the boring-but-secure option and keep the two-factor in place.
upvoted 0 times
Corazon
1 months ago
C) Enable Adaptive Authentication in the portal policy
upvoted 0 times
...
Jacinta
1 months ago
B) Specify the appropriate RADIUS clients in the authentication policy
upvoted 0 times
...
Estrella
1 months ago
A) Create an admin realm in the authentication policy
upvoted 0 times
...
...
Yaeko
2 months ago
Option C sounds like the way to go. Adaptive Authentication can be a pretty slick feature if used properly. Just don't tell my boss I said that.
upvoted 0 times
Delbert
22 days ago
C) Enable Adaptive Authentication in the portal policy
upvoted 0 times
...
Thurman
29 days ago
B) Specify the appropriate RADIUS clients in the authentication policy
upvoted 0 times
...
Darrel
1 months ago
A) Create an admin realm in the authentication policy
upvoted 0 times
...
...
Jospeh
2 months ago
Seriously? Bypassing two-factor authentication? That's like taking the lock off your front door and expecting your house to be more secure.
upvoted 0 times
Shalon
1 months ago
D) Enable the Resolve user geolocation from their IP address option in the authentication policy.
upvoted 0 times
...
Beata
1 months ago
C) Enable Adaptive Authentication in the portal policy
upvoted 0 times
...
Detra
2 months ago
B) Specify the appropriate RADIUS clients in the authentication policy
upvoted 0 times
...
Malcom
2 months ago
A) Create an admin realm in the authentication policy
upvoted 0 times
...
...
Svetlana
3 months ago
Hmm, that makes sense too. We should consider all options before making a decision.
upvoted 0 times
...
Virgie
3 months ago
I disagree, I believe the correct answer is B) Specify the appropriate RADIUS clients in the authentication policy.
upvoted 0 times
...
Svetlana
3 months ago
I think the answer is A) Create an admin realm in the authentication policy.
upvoted 0 times
...

Save Cancel