Which combination of zero-trust remote access design choices would provide secure, performant access for a globally distributed workforce using a mix of managed and unmanaged devices accessing both web and native applications?
Correct Answer: Client-based access with full posture assessment and QUIC/MASQUE transport for managed devices needing native application access, clientless scoped browser access for unmanaged devices needing only web applications, and policy enforcement consistent across both models
Explanation: Client-based access with posture and QUIC/MASQUE for managed devices, scoped clientless access for unmanaged devices, and consistent policy enforcement together support a distributed workforce with mixed devices and application types, unlike requiring client-based access for everyone, granting unmanaged devices full native access, using only legacy TCP tunnels, enforcing policy only on managed devices, or disabling posture assessment for managed devices.
Correct Answer: Client-based access with full posture assessment and QUIC/MASQUE transport for managed devices needing native application access, clientless scoped browser access for unmanaged devices needing only web applications, and policy enforcement consistent across both models
Explanation: Client-based access with posture and QUIC/MASQUE for managed devices, scoped clientless access for unmanaged devices, and consistent policy enforcement together support a distributed workforce with mixed devices and application types, unlike requiring client-based access for everyone, granting unmanaged devices full native access, using only legacy TCP tunnels, enforcing policy only on managed devices, or disabling posture assessment for managed devices.