NSE 7 – OT Security 6.4 — Question 6
An OT administrator has configured FSSO and local firewall authentication. A user who is part of a user group is not prompted from credentials during authentication.
What is a possible reason?
Answer options
- A. FortiGate determined the user by passive authentication
- B. The user was determined by Security Fabric
- C. Two-factor authentication is not configured with RADIUS authentication method
- D. FortiNAC determined the user by DHCP fingerprint method
Correct answer: A
Explanation
The correct answer is A because FortiGate can use passive authentication to recognize users based on their existing sessions without requiring them to input credentials. Options B, C, and D do not apply here; B is incorrect because Security Fabric does not directly handle user authentication in this context, C is irrelevant as the question doesn't mention RADIUS, and D is incorrect since FortiNAC involves a different mechanism that is not being utilized in this scenario.