nerdexam
Fortinet

FCP_FGT_AD-7.6 · Question #3

A FortiGate firewall policy is configured with active authentication, however, the user cannot authenticate when accessing a website. Which protocol must FortiGate allow even though the user cannot…

The correct answer is D. DNS. A firewall policy must allow a protocol in order to show the authentication dialog that is used in active authentication (such as HTTP/HTTPS/FTP/Telnet) and DNS.

Submitted by femi9· Apr 18, 2026Firewall policies and authentication

Question

A FortiGate firewall policy is configured with active authentication, however, the user cannot authenticate when accessing a website. Which protocol must FortiGate allow even though the user cannot authenticate?

Options

  • ALDAP
  • BTACASC+
  • CKerberos
  • DDNS

How the community answered

(23 responses)
  • A
    9% (2)
  • C
    4% (1)
  • D
    87% (20)

Explanation

A firewall policy must allow a protocol in order to show the authentication dialog that is used in active authentication (such as HTTP/HTTPS/FTP/Telnet) and DNS.

Topics

#DNS#FortiGate policies#Authentication prerequisites#Network fundamental protocols

Community Discussion

No community discussion yet for this question.

Full FCP_FGT_AD-7.6 Practice