ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 15 - NSE7_LED-7.0 discussion

Report
Export

You are configuring a FortiGate wireless network to support automated wireless client quarantine using IOC Which two configurations must you put in place for a wireless client to be quarantined successfully? (Choose two)

A.
Configure the wireless network to be in tunnel mode
Answers
A.
Configure the wireless network to be in tunnel mode
B.
Configure the FortiGate device in the Security Fabric with a FortiAnalyzer device
Answers
B.
Configure the FortiGate device in the Security Fabric with a FortiAnalyzer device
C.
Configure a firewall policy to allow communication
Answers
C.
Configure a firewall policy to allow communication
D.
Configure the wireless network to be in bridge mode
Answers
D.
Configure the wireless network to be in bridge mode
Suggested answer: A, B

Explanation:

According to the FortiGate Administration Guide, ''To enable automated wireless client quarantine using IOC, you must configure the following settings: Configure your wireless network to be in tunnel mode. This allows FortiGate to inspect all wireless traffic and apply security policies. Configure your FortiGate device in the Security Fabric with a FortiAnalyzer device. This allows FortiAnalyzer to detect indicators of compromise (IOC) from wireless traffic and send quarantine commands to FortiGate.'' Therefore, options A and B are true because they describe the configurations that must be put in place for a wireless client to be quarantined successfully using IOC. Option C is false because configuring a firewall policy to allow communication is not required, as the default firewall policy for tunnel mode wireless networks is to allow all traffic. Option D is false because configuring the wireless network to be in bridge mode is not supported, as FortiGate cannot inspect or quarantine wireless traffic in bridge mode.

asked 18/09/2024
Cristian Melo
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first