Fortinet NSE6_FAC-6.1 Exam Overview:
| Certification Vendor: | Fortinet |
| Exam Name: | Fortinet NSE 6 - FortiAuthenticator 6.1 |
| Exam Number: | NSE6_FAC-6.1 |
| Passing Score: | 70% |
| Certificate Validity Period: | 2 years |
| Exam Duration: | 60 minutes |
| Exam Format: | Multiple Choice, Multiple Select |
| Real Exam Qty: | 30 |
| Related Certifications: | NSE 4 Network Security Professional NSE 7 Network Security Architect |
| Available Languages: | English |
| Exam Price: | $200 USD |
| Recommended Training: | FortiAuthenticator 6.1 Administration |
| Exam Registration: | Pearson VUE Registration Fortinet Training Portal |
| Sample Questions: | Fortinet NSE6_FAC-6.1 Sample Questions |
| Exam Way: | Online proctored or onsite at Pearson VUE test centers |
| Pre Condition: | NSE 4 certification or equivalent networking/security experience recommended |
| Official Syllabus URL: | https://training.fortinet.com/ |
Fortinet NSE6_FAC-6.1 Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| Topic 1: FortiAuthenticator Overview and Architecture | 15% | - High availability and clustering - Initial setup and configuration - System components and deployment modes |
| Topic 2: Fortinet Single Sign-On (FSSO) | 15% | - FSSO agent configuration - Integration with FortiGate - RSSO and transparent authentication |
| Topic 3: Troubleshooting and Monitoring | 10% | - System maintenance and upgrades - Logging, reporting, and diagnostics - Common authentication and integration issues |
| Topic 4: SAML and Federation Services | 15% | - SSO workflows and attribute mapping - SAML Identity Provider (IdP) configuration - SAML Service Provider (SP) integration |
| Topic 5: Certificate Management | 20% | - Local Certificate Authority (CA) setup - SCEP and OCSP integration - Certificate issuance, renewal, and revocation |
| Topic 6: Authentication Services | 25% | - Portal authentication and self-service - Local, LDAP, and RADIUS authentication - 802.1X and MAC-based authentication - Multi-factor authentication and FortiTokens |
Fortinet NSE 6 - FortiAuthenticator 6.1 Sample Questions:
1. Which two SAML roles can Fortiauthenticator be configured as? (Choose two)
A) Principal
B) Service provider
C) Assertion server
D) Idendity provider
2. Which two statement about the RADIUS service on FortiAuthenticator are true? (Choose two)
A) Only local users can be authenticated through RADIUS
B) RADIUS users can migrated to LDAP users
C) FortiAuthenticator answers only to RADIUS client that are registered with FortiAuthenticator
D) Two-factor authentication cannot be enforced when using RADIUS authentication
3. Which two statements about the EAP-TTLS authentication method are true? (Choose two)
A) Support a port access control (wired) solution only
B) Requires an EAP server certificate
C) Uses mutualauthentication
D) Uses digital certificates only on the server side
4. Which method is the most secure way of delivering FortiToken data once the token has been seeded?
A) Using the in-house token provisioning tool
B) Automatic token generation using FortiAuthenticator
C) Online activation of the tokens through the FortiGuard network
D) Shipment of the seed files on a CD using a tamper-evident envelope
Solutions:
| Question # 1 Answer: B,D | Question # 2 Answer: B,C | Question # 3 Answer: B,D | Question # 4 Answer: D |
We're so confident of our products that we provide no hassle product exchange.


By Corey

