nerdexam
Fortinet

FCP_FGT_AD-7.4 · Question #15

Refer to the exhibit. FortiGate is configured for firewall authentication. When attempting to access an external website, the user is not presented with a login prompt. What is the most likely…

The correct answer is A. The Service DNS is required in the firewall policy. DNS traffic can be allowed if user has not authenticated yet. Hostname resolution is often required by the application layer protocol (HTTP/HTTPS/FTP/Telnet) that is used to authenticate DNS service must be explicity listed as a service in the policy.

Authentication

Question

Refer to the exhibit. FortiGate is configured for firewall authentication. When attempting to access an external website, the user is not presented with a login prompt. What is the most likely reason for this situation?

Exhibit

FCP_FGT_AD-7.4 question #15 exhibit

Options

  • AThe Service DNS is required in the firewall policy.
  • BThe user is using an incorrect user name.
  • CThe Remote-users group is not added to the Destination.
  • DNo matching user account exists for this user.

How the community answered

(39 responses)
  • A
    72% (28)
  • B
    13% (5)
  • C
    5% (2)
  • D
    10% (4)

Explanation

DNS traffic can be allowed if user has not authenticated yet. Hostname resolution is often required by the application layer protocol (HTTP/HTTPS/FTP/Telnet) that is used to authenticate DNS service must be explicity listed as a service in the policy.

Topics

#firewall authentication#DNS service#captive portal#login prompt

Community Discussion

No community discussion yet for this question.

Full FCP_FGT_AD-7.4 Practice