NSE4 · Question #479
Which best describes the authentication timeout?
The correct answer is C. How long an authenticated user can be idle (without sending traffic) before they must. Authentication timeout refers to the maximum duration an authenticated user can be idle (without sending traffic) before their session expires, requiring re-authentication.
Question
Which best describes the authentication timeout?
Options
- AHow long FortiGate waits for the user to enter his or her credentials.
- BHow long a user is allowed to send and receive traffic before he or she must authenticate
- CHow long an authenticated user can be idle (without sending traffic) before they must
- DHow long a user-authenticated session can exist without having to authenticate again.
How the community answered
(36 responses)- A3% (1)
- B6% (2)
- C92% (33)
Why each option
Authentication timeout refers to the maximum duration an authenticated user can be idle (without sending traffic) before their session expires, requiring re-authentication.
This describes a login timeout, which is the time allowed for entering credentials, not for an already authenticated session.
This describes a session duration limit, not specifically an idle timeout that depends on inactivity.
The authentication timeout (often called an idle timeout) specifies the duration an authenticated user's session can remain without any traffic activity. If no traffic is detected within this period, the FortiGate logs out the user, requiring them to re-authenticate when they become active again.
This describes a hard session lifetime limit, which is distinct from an idle timeout that depends on inactivity.
Concept tested: FortiGate authentication idle timeout
Source: https://docs.fortinet.com/document/fortigate/7.4.0/admin-guide/869094/user-groups-and-authentication-settings
Topics
Community Discussion
No community discussion yet for this question.