NSE4 · Question #157
Which of the following statements regarding the firewall policy authentication timeout is true?
The correct answer is A. The authentication timeout is an idle timeout.. The firewall policy authentication timeout on a FortiGate is an idle timeout, meaning the timer resets with each new authenticated session activity.
Question
Which of the following statements regarding the firewall policy authentication timeout is true?
Options
- AThe authentication timeout is an idle timeout.
- BThe authentication timeout is a hard timeout.
- CThe authentication timeout is an idle timeout.
- DThe authentication timeout is a hard timeout.
How the community answered
(23 responses)- A91% (21)
- B4% (1)
- D4% (1)
Why each option
The firewall policy authentication timeout on a FortiGate is an idle timeout, meaning the timer resets with each new authenticated session activity.
The authentication timeout configured in a FortiGate firewall policy is an idle timeout, which means the timer restarts with each new packet or connection that matches the authenticated session. If no traffic is seen for the duration of the timeout, the user is logged out.
A hard timeout implies the session will terminate after a fixed period regardless of user activity, which is not how the authentication timeout functions for FortiGate firewall policies.
This is a duplicate choice and correctly describes the timeout as idle.
This is a duplicate choice and incorrectly describes the timeout as hard.
Concept tested: FortiGate authentication timeout type
Source: https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/86937/authentication-timeout
Topics
Community Discussion
No community discussion yet for this question.