Fortinet
FCP_FGT_AD-7.4 · Question #55
A FortiGate firewall policy is configured with active authentication however, the user cannot authenticate when accessing a website. Which protocol must FortiGate allow even though the user cannot…
The correct answer is B. DNS. Even if the user cannot authenticate, DNS traffic must be allowed to ensure that domain name resolution can occur, which is essential for accessing websites
Firewall policies and authentication
Question
A FortiGate firewall policy is configured with active authentication however, the user cannot authenticate when accessing a website. Which protocol must FortiGate allow even though the user cannot authenticate?
Options
- AICMP
- BDNS
- CDHCP
- DLDAP
How the community answered
(28 responses)- A4% (1)
- B82% (23)
- C4% (1)
- D11% (3)
Explanation
Even if the user cannot authenticate, DNS traffic must be allowed to ensure that domain name resolution can occur, which is essential for accessing websites
Topics
#active authentication#DNS#captive portal#unauthenticated access
Community Discussion
No community discussion yet for this question.