With FSSO, a domain user could authenticate either against the domain controller running the
Collector Agent and Domain Controller Agent, or a domain controller running only the Domain
If you attempt to authenticate with the Secondary Domain Controller running only the Domain
Controller Agent, which of the following statements are correct? (Select all that apply.)
The login event is sent to the Collector Agent.
The FortiGate unit receives the user information from the Domain Controller Agent of the Secondary
The Collector Agent performs the DNS lookup for the authenticated client’s IP address.
The user cannot be authenticated with the FortiGate device in this manner because each Domain
Controller Agent requires a dedicated Collector Agent.