nerdexam
Fortinet

FCSS_LED_AR-7.6 · Question #33

A network administrator is deploying a new FortiGate firewall and wants to enable zero-touch provisioning with FortiManager. The administrator has not manually configured the FortiManager IP address…

The correct answer is A. By retrieving options 240 or 241 from a DHCP server. For zero-touch provisioning, FortiGate can automatically discover FortiManager by retrieving DHCP options 240 or 241 from the DHCP server. These options provide the FortiManager IP address or FQDN, enabling FortiGate to establish communication without manual configuration.

FortiLink Deployment and Configuration

Question

A network administrator is deploying a new FortiGate firewall and wants to enable zero-touch provisioning with FortiManager. The administrator has not manually configured the FortiManager IP address or FQDN on FortiGate. However, FortiGate can still discover FortiManager automatically. In this situation, where can FortiGate learn the FortiManager IP address or FQDN for zero-touch provisioning?

Options

  • ABy retrieving options 240 or 241 from a DHCP server
  • BBy querying the local ARP table for the FortiManager IP address.
  • CBy the default static route configuration on FortiGate.
  • DBy checking the FortiGate factory default configuration.

How the community answered

(50 responses)
  • A
    94% (47)
  • B
    4% (2)
  • D
    2% (1)

Explanation

For zero-touch provisioning, FortiGate can automatically discover FortiManager by retrieving DHCP options 240 or 241 from the DHCP server. These options provide the FortiManager IP address or FQDN, enabling FortiGate to establish communication without manual configuration.

Topics

#zero-touch provisioning#DHCP Option 241#FortiManager FQDN#auto-discovery

Community Discussion

No community discussion yet for this question.

Full FCSS_LED_AR-7.6 Practice