Exam NSE7_SSE_AD-25 Topic 3 Question 36 Discussion
Actual exam question for Fortinet's NSE7_SSE_AD-25 exam
Question #: 36
Topic #: 3
Question #: 36
Topic #: 3
A FortiSASE administrator is receiving reports that some users have travelled overseas and cannot establish their agent-based VPN tunnels, although they can authenticate with their SSO credentials to access 0365 and SFDC directly. The administrator reviewed the firewall policies and ZTNA tags of some users and could not find anything unusual. Which action can the administrator take to resolve this problem?
Suggested Answer: D Vote an answer
FortiSASE agent-based tunnel connectivity can be restricted by geofencing policies. If users travel to countries included in a deny list, the VPN tunnel is blocked even though SSO authentication and SaaS access may still work. Verifying and adjusting geofencing rules resolves the tunnel establishment issue.
by Nigel at Jun 29, 2026, 02:40 PM
0
0
0
10
Comments
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Report Comment
Commenting
You can sign-up / login (it's free).