FCP_FAZ_AN-7.6 · Question #46
Which two actions should you take to view compromised hosts on FortiAnalyzer? (Choose two.)
The correct answer is B. Enable web filtering in firewall policies on FortiGate devices, and make sure the FortiGate logs D. Subscribe FortiAnalyzer to FortiGuard to keep its local threat database up to date. In order to configure IOC, you require the following: - A one-year subscription to IOC. Note that FortiAnalyzer does include an evaluation license, but it is restrictive and only meant to give you an idea of how the feature works. - A web filter services subscription on…
Question
Which two actions should you take to view compromised hosts on FortiAnalyzer? (Choose two.)
Options
- AEnable device detection on FortiGate devices that are sending logs to FortiAnalyzer.
- BEnable web filtering in firewall policies on FortiGate devices, and make sure the FortiGate logs
- CSubscribe to the Outbreak Detection Service so that the FortiAnalyzer has the latest event
- DSubscribe FortiAnalyzer to FortiGuard to keep its local threat database up to date.
How the community answered
(57 responses)- A5% (3)
- B82% (47)
- C12% (7)
Explanation
In order to configure IOC, you require the following: - A one-year subscription to IOC. Note that FortiAnalyzer does include an evaluation license, but it is restrictive and only meant to give you an idea of how the feature works. - A web filter services subscription on FortiGate device(s) - Web filter policies on FortiGate device(s) that send traffic to FortiAnalyzer
Topics
Community Discussion
No community discussion yet for this question.