ExamGecko
Question list
Search
Search

Question 173 - NSE4_FGT-7.2 discussion

Report
Export

An administrator configures FortiGuard servers as DNS servers on FortiGate using default settings.

What is true about the DNS connection to a FortiGuard server?

A.
It uses UDP 8888.
Answers
A.
It uses UDP 8888.
B.
It uses UDP 53.
Answers
B.
It uses UDP 53.
C.
It uses DNS over HTTPS.
Answers
C.
It uses DNS over HTTPS.
D.
It uses DNS overTLS.
Answers
D.
It uses DNS overTLS.
Suggested answer: D

Explanation:

FortiGate Security 7.2 Study Guide (p.15): 'When using FortiGuard servers for DNS, FortiOS uses DNS over TLS (DoT) by default to secure the DNS traffic.'

When using FortiGuard servers for DNS, FortiOS defaults to using DNS over TLS (DoT) to secure the DNS traffic1. DNS over TLS is a protocol that encrypts and authenticates DNS queries and responses using the Transport Layer Security (TLS) protocol2. This prevents eavesdropping, tampering, and spoofing of DNS data by third parties.

The default FortiGuard DNS servers are 96.45.45.45 and 96.45.46.46, and they use the hostname globalsdns.fortinet.net1. The FortiGate verifies the server hostname using the server-hostname setting in the system dns configuration1.

asked 18/09/2024
Yves ADINGNI
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first