Fortinet
NSE8_812 · Question #172
A customer has FortiAP devices in three branch offices managed from a FortiGate in the HQ. Each FortiAP is connected to a dedicated management VLAN. The customer wants the users connected to the…
The correct answer is A. Set each FortiAP to a wtp-group and use set vlan-pooling wtp-group on the VAP configuration with the corresponding VLAN ID configuration for each group. See the full explanation below for the reasoning.
Question
A customer has FortiAP devices in three branch offices managed from a FortiGate in the HQ. Each FortiAP is connected to a dedicated management VLAN.
The customer wants the users connected to the FortiAP SSIDs to use the branch local internet connection, but each branch uses a different VLAN ID for the bridge. HQ users travel to different branches and connect to the same SSID.
Which configuration option will solve this requirement?
Options
- ASet each FortiAP to a wtp-group and use set vlan-pooling wtp-group on the VAP configuration with the corresponding VLAN ID configuration for each group.
- BSet a FortiAuthenticator for 802.1x authentication with the Tunnel-Type attribute set to VLAN and use set dynamic-vlan enable on the VAP configuration.
- CUse set vlan-pooling round-robin on the VAP configuration with the corresponding vlan-pool.
- DUse set vlan-pooling hash on the VAP configuration with the corresponding vlan-pool.
How the community answered
(51 responses)- A76% (39)
- B4% (2)
- C12% (6)
- D8% (4)
Community Discussion
No community discussion yet for this question.