ExamGecko
Question list
Search
Search

Question 122 - NSE5_FAZ-7.2 discussion

Report
Export

What happens when the IOC breach detection engine on FortiAnalyzer finds web logs that match a blocklisted IP address?

A.
The endpoint is marked as Compromised and. optionally, can be put in quarantine.
Answers
A.
The endpoint is marked as Compromised and. optionally, can be put in quarantine.
B.
FortiAnalyzer flags the associated host for further analysis.
Answers
B.
FortiAnalyzer flags the associated host for further analysis.
C.
A new Infected entry is added for the corresponding endpoint.
Answers
C.
A new Infected entry is added for the corresponding endpoint.
D.
The detection engine classifies those logs as Suspicious
Answers
D.
The detection engine classifies those logs as Suspicious
Suggested answer: A
asked 18/09/2024
IllDisposed ToBTS
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first