Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet Exam NSE6_FAC-6.4 Topic 3 Question 34 Discussion

Actual exam question for Fortinet's NSE6_FAC-6.4 exam
Question #: 34
Topic #: 3
[All NSE6_FAC-6.4 Questions]

You have implemented two-factor authentication to enhance security to sensitive enterprise systems.

How could you bypass the need for two-factor authentication for users accessing form specific secured networks?

Show Suggested Answer Hide Answer
Suggested Answer: B, C

EAP-TTLS is an authentication method that uses digital certificates only on the server side to establish a secure tunnel between the server and the client. The client does not need a certificate but can use any inner authentication method supported by the server, such as PAP, CHAP, MS-CHAP, or EAP-MD5. EAP-TTLS requires an EAP server certificate that is issued by a trusted CA and installed on the FortiAuthenticator device acting as the EAP server. EAP-TTLS supports both wireless and wired solutions for port access control. Reference: https://docs.fortinet.com/document/fortiauthenticator/6.4/administration-guide/372412/eap-ttls


Contribute your Thoughts:

Portia
23 days ago
Wait, I thought the exam was supposed to be testing my security skills, not my ability to find loopholes. Might as well just give me a lock-picking kit and call it a day.
upvoted 0 times
...
Becky
26 days ago
Hmm, let me guess - the correct answer is the one that doesn't involve the words 'bypass' or 'two-factor authentication'? Just a hunch.
upvoted 0 times
...
Lizette
29 days ago
Wow, this question is like a treasure hunt for hackers. I think I'll just stick to the boring-but-secure option and keep the two-factor in place.
upvoted 0 times
Corazon
4 days ago
C) Enable Adaptive Authentication in the portal policy
upvoted 0 times
...
Jacinta
5 days ago
B) Specify the appropriate RADIUS clients in the authentication policy
upvoted 0 times
...
Estrella
9 days ago
A) Create an admin realm in the authentication policy
upvoted 0 times
...
...
Yaeko
1 months ago
Option C sounds like the way to go. Adaptive Authentication can be a pretty slick feature if used properly. Just don't tell my boss I said that.
upvoted 0 times
Thurman
1 days ago
B) Specify the appropriate RADIUS clients in the authentication policy
upvoted 0 times
...
Darrel
3 days ago
A) Create an admin realm in the authentication policy
upvoted 0 times
...
...
Jospeh
1 months ago
Seriously? Bypassing two-factor authentication? That's like taking the lock off your front door and expecting your house to be more secure.
upvoted 0 times
Shalon
4 days ago
D) Enable the Resolve user geolocation from their IP address option in the authentication policy.
upvoted 0 times
...
Beata
15 days ago
C) Enable Adaptive Authentication in the portal policy
upvoted 0 times
...
Detra
20 days ago
B) Specify the appropriate RADIUS clients in the authentication policy
upvoted 0 times
...
Malcom
21 days ago
A) Create an admin realm in the authentication policy
upvoted 0 times
...
...
Svetlana
2 months ago
Hmm, that makes sense too. We should consider all options before making a decision.
upvoted 0 times
...
Virgie
2 months ago
I disagree, I believe the correct answer is B) Specify the appropriate RADIUS clients in the authentication policy.
upvoted 0 times
...
Svetlana
2 months ago
I think the answer is A) Create an admin realm in the authentication policy.
upvoted 0 times
...

Save Cancel