Summer Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dcdisc65

Page: 1 / 1
Total 9 questions
Exam Code: NSE6_FAC-6.1                Update: Oct 15, 2025
Exam Name: Fortinet NSE 6 - FortiAuthenticator 6.1

Fortinet Fortinet NSE 6 - FortiAuthenticator 6.1 NSE6_FAC-6.1 Exam Dumps: Updated Questions & Answers (October 2025)

Question # 1

Which network configuration is required when deploying FortiAuthenticator for portal services?

A.

FortiAuthenticator must have the REST API access enable on port1

B.

One of the DNS servers must be a FortiGuard DNS server

C.

Fortigate must be setup as default gateway for FortiAuthenticator

D.

Policies must have specific ports open between FortiAuthenticator and the authentication clients

Question # 2

How can a SAML metada file be used?

A.

To defined a list of trusted user names

B.

To import the required IDP configuration

C.

To correlate the IDP address to its hostname

D.

To resolve the IDP realm for authentication

Question # 3

You are a FortiAuthenticator administrator for a large organization. Users who are configured to use FortiToken 200 for two-factor authentication can no longer authenticate. You have verified that only the users with two-factor authentication are experiencing the issue.

What can couse this issue?

A.

On of the FortiAuthenticator devices in the active-active cluster has failed

B.

FortiAuthenticator has lose contact with the FortiToken Cloud servers

C.

FortiToken 200 licence has expired

D.

Time drift between FortiAuthenticator and hardware tokens

Question # 4

Which method is the most secure way of delivering FortiToken data once the token has been seeded?

A.

Online activation of the tokens through the FortiGuard network

B.

Shipment of the seed files on a CD using a tamper-evident envelope

C.

Using the in-house token provisioning tool

D.

Automatic token generation using FortiAuthenticator

Question # 5

When you are setting up two FortiAuthenticator devices in active-passive HA, which HA role must you select on the masterFortiAuthenticator?

A.

Active-passive master

B.

Standalone master

C.

Cluster member

D.

Load balancing master

Question # 6

Which EAP method is known as the outer authentication method?

A.

PEAP

B.

EAP-GTC

C.

EAP-TLS

D.

MSCHAPV2

Question # 7

You are a Wi-Fi provider and host multiple domains. How do you delegate user accounts, user groups and permissions per domain when theyare authenticating on a single FortiAuthenticator device?

A.

Automatically import hosts from each domain as they authenticate

B.

Create multiple directory trees on FortiAuthenticator

C.

Create realms

D.

Create user groups

Question # 8

Which FSSO discovery method transparently detects logged off users without having to rely on external features such as WMI polling?

A.

Windows AD polling

B.

FortiClient SSO Mobility Agent

C.

Radius Accounting

D.

DC Polling

Question # 9

Which two are supported captive or guest portal authentication methods? (Choose two)

A.

Linkedln

B.

Apple ID

C.

Instagram

D.

Email

Page: 1 / 1
Total 9 questions

Most Popular Certification Exams

Payment

       

Contact us

dumpscollection live chat

Site Secure

mcafee secure

TESTED 16 Oct 2025