FCSS_LED_AR-7.6 · Question #66
Which VLAN is used by FortiGate to place devices that fail to match any configured NAC policies?
The correct answer is D. Onboarding. In FortiLink NAC for LAN Edge: When a device first connects, it is placed into theonboarding VLAN. NAC policies then classify the device (by MAC, OS, user, EMS tag, etc.). If a NAC policy matches, the device may be moved to anaccess VLANorquarantine VLAN. Ifno NAC policy…
Question
Which VLAN is used by FortiGate to place devices that fail to match any configured NAC policies?
Options
- ANAC
- Bsegment
- CQuarantine
- DOnboarding
How the community answered
(31 responses)- A3% (1)
- B3% (1)
- D94% (29)
Explanation
In FortiLink NAC for LAN Edge: When a device first connects, it is placed into theonboarding VLAN. NAC policies then classify the device (by MAC, OS, user, EMS tag, etc.). If a NAC policy matches, the device may be moved to anaccess VLANorquarantine VLAN. Ifno NAC policy matches, the device simplystays in the onboarding VLAN. FortiOS / LAN Edge documentation describes the onboarding VLAN as thedefault VLAN for unknown or unclassified devices, until NAC policy evaluation moves them elsewhere.
Topics
Community Discussion
No community discussion yet for this question.