QuestionQ13

Central management

Refer to the exhibits.

Question Image

The system-administrator settings on a root FortiGate and the Security Fabric settings on a downstream FortiGate are displayed. When signing in to the downstream FortiGate through Security Fabric, a user provides the single sign-on (SSO) provider credentials.

What is the result?

  • A The downstream FortiGate relies on the root FortiGate and does not create an administrator account.
  • B The user is prompted to create an administrator account for AdminSSO.
  • C The downstream FortiGate creates an SSO administrator account for AdminSSO with the super_admin profile.
  • D The downstream FortiGate creates an SSO administrator account for AdminSSO with the super_admin_readonly profile.
Explanation

A downstream FortiGate configured as a SAML service provider automatically creates an SSO administrator after that user’s first successful SSO login. The created account receives the downstream service provider’s configured Default admin profile, which is super_admin_readonly, rather than inheriting the root FortiGate account’s super_admin profile. Fortinet: SSO administrators

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!