Fortinet
FCP_FGT_AD-7.6 · Question #3
A FortiGate firewall policy is configured with active authentication, however, the user cannot authenticate when accessing a website. Which protocol must FortiGate allow even though the user cannot…
The correct answer is D. DNS. A firewall policy must allow a protocol in order to show the authentication dialog that is used in active authentication (such as HTTP/HTTPS/FTP/Telnet) and DNS.
Submitted by femi9· Apr 18, 2026Firewall policies and authentication
Question
A FortiGate firewall policy is configured with active authentication, however, the user cannot authenticate when accessing a website. Which protocol must FortiGate allow even though the user cannot authenticate?
Options
- ALDAP
- BTACASC+
- CKerberos
- DDNS
How the community answered
(23 responses)- A9% (2)
- C4% (1)
- D87% (20)
Explanation
A firewall policy must allow a protocol in order to show the authentication dialog that is used in active authentication (such as HTTP/HTTPS/FTP/Telnet) and DNS.
Topics
#DNS#FortiGate policies#Authentication prerequisites#Network fundamental protocols
Community Discussion
No community discussion yet for this question.