NSE4 · Question #200
The Idle Timeout setting on a FortiGate unit applies to which of the following?
The correct answer is D. Administrator access. The Idle Timeout setting on a FortiGate unit specifically controls how long an administrator's GUI or CLI session can remain inactive before it is automatically terminated for security purposes.
Question
The Idle Timeout setting on a FortiGate unit applies to which of the following?
Options
- AWeb browsing
- BFTP connections
- CUser authentication
- DAdministrator access
- EWeb filtering overrides.
How the community answered
(41 responses)- C2% (1)
- D95% (39)
- E2% (1)
Why each option
The Idle Timeout setting on a FortiGate unit specifically controls how long an administrator's GUI or CLI session can remain inactive before it is automatically terminated for security purposes.
Web browsing sessions are typically managed by the browser or web server timeouts, not a global 'Idle Timeout' on the FortiGate for this specific purpose.
FTP connections have their own session timeouts managed by the FTP server and client, or by general session timeouts on the FortiGate for specific protocols, but not typically the global 'Idle Timeout' setting.
User authentication sessions (e.g., captive portal) have their own specific timeout settings, distinct from the administrative idle timeout.
The Idle Timeout setting on a FortiGate unit is a security feature that specifies the maximum duration an administrative session (either GUI or CLI) can remain inactive before the administrator is automatically logged out. This prevents unauthorized access if an administrator leaves their session unattended.
Web filtering overrides are temporary permissions and do not have an 'idle timeout' in the same context as an administrative session.
Concept tested: FortiGate administrative session security
Source: https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/468894/administrative-access
Topics
Community Discussion
No community discussion yet for this question.