Which two statements are true regarding certificate-based authentication for ZTNA deployment? (Choose two.)FortiGate signs the client certificate submitted by FortiClient.The default action for empty certificates is blockCertificate actions can be configured only on the FortiGate CLIClient certificate configuration is a mandatory component for ZTNA
An administrator wants to prevent direct host-to-host communication at layer 2 and use only FortiGate to inspect all the VLAN traffic What three things must the administrator configure on FortiGate to allow traffic between the hosts? (Choose three.)
What are two functions of NGFW in a ZTA deployment? (Choose two.)
Which configuration is required for FortiNAC to perform an automated incident response based on the FortiGate traffic?
With the increase in loT devices, which two challenges do enterprises face? (Choose two.)