nerdexam
Fortinet

NSE7_OTS-7.2 · Question #47

An ОТ supervisor has configured LDAP and FSSO for authentication. The goal is that all users be authenticated against passive authentication first and. if passive authentication is not successful…

The correct answer is C. Configure a firewall policy with FSSO users and place it on the top of list of firewall policies. The OT supervisor should configure a firewall policy with FSSO users and place it on the top of list of firewall policies in order to achieve the goal of authenticating users against passive authentication first and, if passive authentication is not successful, then challenging…

FortiGate OT Security

Question

An ОТ supervisor has configured LDAP and FSSO for authentication. The goal is that all users be authenticated against passive authentication first and. if passive authentication is not successful, then users should be challenged with active authentication. What should the ОТ supervisor do to achieve this on FortiGate?

Options

  • AConfigure a firewall policy with LDAP users and place it on the top of list of firewall policies.
  • BEnable two-factor authentication with FSSO.
  • CConfigure a firewall policy with FSSO users and place it on the top of list of firewall policies.
  • DUnder config user settings configure set auth-on-demand implicit.

How the community answered

(42 responses)
  • A
    10% (4)
  • B
    2% (1)
  • C
    83% (35)
  • D
    5% (2)

Explanation

The OT supervisor should configure a firewall policy with FSSO users and place it on the top of list of firewall policies in order to achieve the goal of authenticating users against passive authentication first and, if passive authentication is not successful, then challenging them with active authentication.

Topics

#FSSO#LDAP authentication#passive authentication#active authentication

Community Discussion

No community discussion yet for this question.

Full NSE7_OTS-7.2 Practice