Exam FCP_FGT_AD-7.6 Topic 2 Question 128 Discussion

Actual exam question for Fortinet's FCP_FGT_AD-7.6 exam
Question #: 128
Topic #: 2
A FortiGate administrator enables SSL deep inspection on a policy but users report certificate warnings in their browsers. What is the most appropriate step to resolve this while keeping deep inspection active?

Suggested Answer: A Vote an answer

When FortiGate performs SSL deep inspection, it substitutes the original server certificate with one it generates on the fly, signed by its internal CA. If endpoints do not trust that CA, they report errors. Deploying the FortiGate CA as a trusted root certificate on client machines resolves the warnings while retaining the ability to inspect encrypted traffic for malware, policy violations, and suspicious behavior.

by Todd at Sep 23, 2026, 01:36 AM

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Nick name: Submit Cancel
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

0
0
0
10