ExamGecko
Question list
Search
Search

Question 18 - NSE4_FGT-7.2 discussion

Report
Export

Refer to the exhibit.

Examine the intrusion prevention system (IPS) diagnostic command.

Which statement is correct If option 5 was used with the IPS diagnostic command and the outcome was a decrease in the CPU usage?

A.
The IPS engine was inspecting high volume of traffic.
Answers
A.
The IPS engine was inspecting high volume of traffic.
B.
The IPS engine was unable to prevent an intrusion attack .
Answers
B.
The IPS engine was unable to prevent an intrusion attack .
C.
The IPS engine was blocking all traffic.
Answers
C.
The IPS engine was blocking all traffic.
D.
The IPS engine will continue to run in a normal state.
Answers
D.
The IPS engine will continue to run in a normal state.
Suggested answer: A

Explanation:

fortinet-fortigate-security-study-guide-for-fortios-72 page 417 If there are high-CPU use problems caused by the IPS, you can use the diagnose test application ipsmonitor command with option 5 to isolate where the problem might be. Option 5 enables IPS bypass mode. In this mode, the IPS engine is still running, but it is not inspecting traffic. If the CPU use decreases after that, it usually indicates that the volume of traffic being inspected is too high for that FortiGate model.

https://docs.fortinet.com/document/fortigate/6.2.3/cookbook/232929/troubleshooting-high-cpu-usage

asked 18/09/2024
Ramesh Kumar Patel
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first