Which three statements are true about zero-trust telemetry compliance1? (Choose three.)
A.
FortiClient EMS creates dynamic policies using ZTNAtags
A.
FortiClient EMS creates dynamic policies using ZTNAtags
B.
FortiChent checks the endpoint using the ZTNAtags provided by FortiClient EMS
B.
FortiChent checks the endpoint using the ZTNAtags provided by FortiClient EMS
C.
ZTNA tags are configured in FortiClient, based on criteria such as certificates and the logged in domain
C.
ZTNA tags are configured in FortiClient, based on criteria such as certificates and the logged in domain
D.
FortiOS provides network access to the endpoint based on the zero-trust tagging rules
D.
FortiOS provides network access to the endpoint based on the zero-trust tagging rules
E.
FortiClient EMS sends the endpoint information received through FortiClient Telemetry to FortiOS
E.
FortiClient EMS sends the endpoint information received through FortiClient Telemetry to FortiOS
Suggested answer: A, B, D
Explanation:
In the context of zero-trust telemetry compliance, the three true statements are:
A) FortiClient EMS creates dynamic policies using ZTNA tags: FortiClient EMS utilizes ZTNA (Zero Trust Network Access) tags to create dynamic policies based on the telemetry it receives from endpoints.
B) FortiClient checks the endpoint using the ZTNA tags provided by FortiClient EMS: FortiClient on the endpoint uses the ZTNA tags from FortiClient EMS to determine compliance with the specified security policies.
D) FortiOS provides network access to the endpoint based on the zero-trust tagging rules: FortiOS, the operating system running on FortiGate devices, uses the zero-trust tagging rules to make decisions on network access for endpoints.
The other options are not accurate in this context:
C) ZTNA tags are configured in FortiClient, based on criteria such as certificates and the logged-in domain: ZTNA tags are typically configured and managed in FortiClient EMS, not directly in FortiClient.
E) FortiClient EMS sends the endpoint information received through FortiClient Telemetry to FortiOS: While FortiClient EMS does process telemetry data, the direct sending of endpoint information to FortiOS is not typically described in this manner.
Zero Trust Telemetry in Fortinet Solutions.
FortiClient EMS and FortiOS Integration for ZTNA.
Question