Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet NSE8_812 Exam - Topic 3 Question 60 Discussion

A FortiGate is configured to perform outbound firewall authentication with Azure AD as a SAML IdP.What are two valid interactions that occur when the client attempts to access the internet? (Choose two.)
A) FortiGate SP sends a SAML request to the IdP. and B) The Microsoft SAML IdP sends the SAML response to the FortiGate SP.
C) The client browser forwards the SAML response received from Microsoft SAML IdP to the FortiGate SP.
D) FortiGate SP redirects the client browser to the local captive portal and then redirects to the Microsoft SAML IdP.

Fortinet NSE8_812 Exam - Topic 3 Question 60 Discussion

Actual exam question for Fortinet's NSE8_812 exam
Question #: 60
Topic #: 3
[All NSE8_812 Questions]

A FortiGate is configured to perform outbound firewall authentication with Azure AD as a SAML IdP.

What are two valid interactions that occur when the client attempts to access the internet? (Choose two.)

Show Suggested Answer Hide Answer
Suggested Answer: A, B

Contribute your Thoughts:

0/2000 characters
Shelia
9 hours ago
Wait, isn't D a bit off? Seems unnecessary.
upvoted 0 times
...
Vannessa
6 days ago
I think C is also a valid interaction.
upvoted 0 times
...
Lenna
11 days ago
A and B are definitely correct!
upvoted 0 times
...
Amos
16 days ago
I think the Microsoft SAML IdP sending the response to the FortiGate is a key step, but I'm not completely sure about the captive portal part.
upvoted 0 times
...
Delisa
2 months ago
I practiced a similar question where the FortiGate redirected to the IdP, but I can't recall if that's part of the outbound authentication process here.
upvoted 0 times
...
Mollie
2 months ago
I'm a bit unsure about the order of interactions, but I feel like the client browser must play a role in forwarding the SAML response back to the FortiGate.
upvoted 0 times
...
Allene
2 months ago
I remember that the FortiGate acts as a service provider, so I think it definitely sends a SAML request to the IdP first.
upvoted 0 times
...

Save Cancel