Correct answer is A and B.
Zero-trust tags are not used in the endpoint profile (in the endpoint profile are used the ZTNA destinations and not the ZTNA tags)
Study Guide FortiSASE 24 PAGE 112:
Zero-Trust Tags
• Determine the security posture of an endpoint running FortiClient
• Created using zero-trust tagging rules
• Allow or deny access to resources for agent-based remote users
B is wrong, tag does not determine the security posture, security posture is determined according to the status of the endpoint such as windows defender is not active, accordingly tag is assigned to the endpoint. C is correct as you can create profiles such as windows 10 group or windows 11 groups.
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
throwaway4
3 months, 3 weeks agoJack84it
5 months, 1 week agoAshreef
5 months, 1 week agoNappel
5 months, 2 weeks agoKen_Zie
5 months, 3 weeks agodziobak79
6 months ago