DumpsFiles
 Request Exam  Contact
  • Home
  • PRACTICE EXAMS
    Oracle
    Fortinet
    Juniper
    Microsoft
    Cisco
    Citrix
    CompTIA
    VMware
    ISC
    SAP
    EMC
    PMI
    HP
    Salesforce
    Other
  • View All Exams
  • New Dumps Files
  • Upload
  • Oracle
    Oracle
  • Fortinet
    Fortinet
  • Juniper
    Juniper
  • Microsoft
    Microsoft
  • Cisco
    Cisco
  • Citrix
    Citrix
  • CompTIA
    CompTIA
  • VMware
    VMware
  • ISC
    ISC
  • SAP
    SAP
  • EMC
    EMC
  • PMI
    PMI
  • HP
    HP
  • Salesforce
    Salesforce
  1. Home
  2. Fortinet
  3. Fortinet NSE 5 - FortiNAC-F 7.6 Administrator
  4. Fortinet.NSE5_FNC_AD_7.6.v2026-07-18.q27
  5. Question 15

Join the discussion

Question 15/27

Refer to the exhibit.


An administrator has configured the DHCP scope for a registration isolation network, but the isolation process isn't working.
What is the problem with the configuration?

Correct Answer: D
In a FortiNAC-F deployment, the configuration of the DHCP scope for isolation networks (Registration, Remediation, etc.) must perfectly align with the underlying network infrastructure to ensure that isolated hosts can communicate with the FortiNAC appliance. In the provided exhibits, there is a clear discrepancy between the DHCP configuration and the Network Topology.
As shown in the "Network Topology" exhibit, the Registration Network resides on a router interface (or sub-interface) with the IP address 192.168.180.1. This address represents the default gateway for any host placed into the Registration VLAN. However, the "DHCP configuration" exhibit shows the scope "REG-ScopeOne" configured with a Gateway of 10.0.1.254. This 10.0.1.254 address belongs to the management/service network (port2 of FortiNAC), not the registration subnet. If a host in the Registration VLAN receives this incorrect gateway via DHCP, it will attempt to send all off-link traffic to an unreachable IP, preventing it from loading the Captive Portal or communicating with the FortiNAC server.
According to the FortiNAC-F Configuration Wizard Reference, when defining a Layer 3 network scope, the "Gateway" field must contain the IP address of the router interface that acts as the gateway for that specific isolation VLAN. The FortiNAC appliance itself usually sits on a different subnet, and traffic is directed to it via the router's DHCP Relay (IP Helper) and DNS redirection.
"When configuring scopes for a Layer 3 network, the Gateway value must be the IP address of the router interface for that subnet. This allows the host to reach its local gateway to route traffic. If the gateway is misconfigured, the host will be unable to reach the FortiNAC eth1/port2 interface for registration... Ensure the Gateway matches the network topology for the isolation VLAN." - FortiNAC-F Configuration Wizard Reference Manual: DHCP Scopes.

Add Comments

Your email address will not be published. Required fields are marked *

insert code
Type the characters from the picture.
Rating:
Other Question (27q)
Q1. During an evaluation of state-based enforcement, an administrator discovers that ports tha...
Q2. Refer to the exhibit. (Exhibit) After a successful layer 2 poll, two hosts were learned on...
Q3. Which two requirements must be met to set up an N+1 HA cluster? (Choose two.)...
Q4. Which two actions must the administrator perform to allow FortiNAC-F to process incoming s...
Q5. While deploying FortiNAC-F devices in a 1+1 HA configuration, the administrator has chosen...
Q6. When creating a user or host profile, which three criteria can you apply? (Choose three.)...
Q7. Refer to the exhibit. (Exhibit) If a host is connected to a port in the Building 1 First F...
Q8. Refer to the exhibit. (Exhibit) An administrator wants to ensure that guest accounts creat...
Q9. Refer to the exhibits. (Exhibit) What would happen if the highlighted port with connected ...
Q10. While troubleshooting a network connectivity issue, an administrator determines that a dev...
Q11. When configuring FortiNAC-F to manage FortiGate VPN users, an endpoint compliance policy m...
Q12. An administrator wants to control user access to corporate resources by integrating FortiN...
Q13. An administrator wants FortiNAC-F to pass firewall tags to FortiGate to leverage dynamic a...
Q14. Two FortiNAC-F devices have been configured as a 1 + 1 HA pair. The primary server went of...
Q15. Refer to the exhibit. (Exhibit) An administrator has configured the DHCP scope for a regis...
Q16. An organization wants to add a FortiNAC-F Manager to simplify their large FortiNAC-F deplo...
Q17. When working with a FortiNAC-F Manager and cluster management, what will occur when a clus...
Q18. Refer to the exhibits. (Exhibit) An administrator is troubleshooting visibility issues on ...
Q19. An administrator wants to create a conference manager administrator account but would like...
Q20. Refer to the exhibit. (Exhibit) What would FortiNAC-F generate if only one of the security...
Q21. Refer to the exhibit. (Exhibit) An administrator wants to use FortiNAC-F to automatically ...
Q22. What must an administrator configure to allow FortiNAC-F to process incoming syslog messag...
Q23. When preparing network infrastructure devices for visibility, what are the two main advant...
Q24. A user was attempting to register their host through the registration captive portal. Afte...
Q25. When managing multiple FortiNAC-F CAs with a FortiNAC-F Manager, how is endpoint informati...
Q26. Refer to the exhibit. A FortiNAC-F N+1 HA configuration is shown. (Exhibit) What will occu...
Q27. An administrator wants to build a security rule that will quarantine contractors who attem...
[×]

Download PDF File

Enter your email address to download Fortinet.NSE5_FNC_AD_7.6.v2026-07-18.q27.pdf

Email:

DumpsFiles

Our website provides the Largest and the most Latest vendors Certification Exam materials around the world.

Using dumps we provide to Pass the Exam, we has the Valid Dumps with passing guranteed just which you need.

  • DMCA
  • About
  • Contact Us
  • Privacy Policy
  • Terms & Conditions
©2026 DumpsFiles

www.dumpsfiles.com materials do not contain actual questions and answers from Cisco's certification exams.