ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 14 - FCP_FGT_AD-7.4 discussion

Report
Export

Refer to the exhibit, which shows the IPS sensor configuration.

If traffic matches this IPS sensor, which two actions is the sensor expected to take? (Choose two.)

A.
The sensor will gather a packet log for all matched traffic.
Answers
A.
The sensor will gather a packet log for all matched traffic.
B.
The sensor will reset all connections that match these signatures.
Answers
B.
The sensor will reset all connections that match these signatures.
C.
The sensor will allow attackers matching the Microsoft.Windows.iSCSl.Target.DoS signature.
Answers
C.
The sensor will allow attackers matching the Microsoft.Windows.iSCSl.Target.DoS signature.
D.
The sensor will block all attacks aimed at Windows servers.
Answers
D.
The sensor will block all attacks aimed at Windows servers.
Suggested answer: A, C

Explanation:

The Microsoft.Windows.iSCSI.Target.DoS signature is set to 'Monitor' with packet loggingenabled, meaning that while traffic matching this signature will be allowed, it will also belogged for further analysis.The generic Windows filter is set to 'Block,' meaning that all other attacks matching this filterwill be blocked. However, the sensor will not reset connections or log packets unless specified.Therefore, the sensor will allow attackers matching the specific DoS signature while blockingother attacks against Windows.FortiOS 7.4.1 Administration Guide: IPS Configuration

asked 18/09/2024
Scott Taylor
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first