FCP-FGT-AD - Firewall policies and authentication - Section 2.4

Explain how to deploy and configure Fortinet Single Sign-On (FSSO) for identity-based policy enforcement.

Describe the Fortinet Single Sign-On architecture, distinguishing the DC agent and collector agent roles and how they pass Windows logon events to FortiGate for passive authentication. Apply FSSO to identity-based firewall policies so users are matched by group membership without re-authenticating.

FSSOFortinet Single Sign-OnDC agentcollector agentpassive authentication

More in this domain

Back to all Firewall policies and authentication objectives, or the FCP-FGT-AD cert hub.

Examworthy is not affiliated with or endorsed by Fortinet. Original, blueprint-aligned practice material only.