nerdexam
Fortinet

FCP_FGT_AD-7.4 · Question #55

A FortiGate firewall policy is configured with active authentication however, the user cannot authenticate when accessing a website. Which protocol must FortiGate allow even though the user cannot…

The correct answer is B. DNS. Even if the user cannot authenticate, DNS traffic must be allowed to ensure that domain name resolution can occur, which is essential for accessing websites

Firewall policies and authentication

Question

A FortiGate firewall policy is configured with active authentication however, the user cannot authenticate when accessing a website. Which protocol must FortiGate allow even though the user cannot authenticate?

Options

  • AICMP
  • BDNS
  • CDHCP
  • DLDAP

How the community answered

(28 responses)
  • A
    4% (1)
  • B
    82% (23)
  • C
    4% (1)
  • D
    11% (3)

Explanation

Even if the user cannot authenticate, DNS traffic must be allowed to ensure that domain name resolution can occur, which is essential for accessing websites

Topics

#active authentication#DNS#captive portal#unauthenticated access

Community Discussion

No community discussion yet for this question.

Full FCP_FGT_AD-7.4 Practice