FCSS – FortiSASE Administrator 25 — Question 10
An administrator must restrict endpoints from certain countries from connecting to FortiSASE.
Which configuration can achieve this?
Answer options
- A. Configure a network lockdown policy on the endpoint profiles.
- B. Configure a geography address object as the source for a deny policy.
- C. Configure geofencing to restrict access from the required countries.
- D. Configure source IP anchoring to restrict access from the specified countries.
Correct answer: C
Explanation
The correct answer is C because geofencing is specifically designed to restrict access based on geographical locations. Options A and B do not specifically target country restrictions, while D involves source IP anchoring, which is not as effective for managing access based on country.