Which mode is recommended for FSSO deployments?
DC agent mode
Which naming conventions does the FSSO collector agent use to access the Windows AD in standard access mode?
Which FSSO mode requires more FortiGate system resources (CPU and RAM)?
Agentless polling mode
What are two servers that can be used with FSSO?
What are two polling modes used in FSSO?
What are some things the collector agent is responsible for?
What is the most scalable agent mode in FSSO?
DC Agent Mode
What does the collector agent receive from the DC and forward to FortiGate?
What are three methods for collector agent-based polling mode?
What is the recommended collector agent-based polling mode?
WMI
What is a drawback of using NetAPI as a polling mode?
It is faster, but can miss login events if DC has a heavy system load
What is a drawback of using WinSecLog as a polling mode?
It is the slowest mode, but it does see all login events
How does the collector agent get user login events?
Polls the DC frequently
What are some cons of using agentless polling mode?
Is DC agent mode or polling mode more complex?
What are some pre-requisites that need to be properly configured on FortiGate so FSSO can work properly?
What does FortiGate use to query AD in agentless polling mode?
LDAP
Where would you configure LDAP to use with agentless polling mode?
Security Fabric > External Connectors
Where can you install a FSSO Agent?
Fortinet support website
What would you configure for a network service account when configuring FSSO, to avoid overwriting event logs?
Ignored User List
What’s the minimum bandwidth required for each domain controller for FSSO to function properly?
64 Kbps