FCSS_CDS_AR-7.6 · Question #1
As part of your organization's monitoring plan, you have been tasked with obtaining and analyzing detailed information about the traffic sourced at one of your FortiGate EC2 instances. What can you…
The correct answer is B. Create a virtual public cloud (VPC) flow log at the network interface level for the EC2 instance. VPC Flow Logs are designed to capture metadata about IP traffic to and from network interfaces in a VPC, including those attached to EC2 instances such as FortiGate appliances. Creating a flow log at the network interface level for the FortiGate EC2 instance lets you collect…
Question
As part of your organization's monitoring plan, you have been tasked with obtaining and analyzing detailed information about the traffic sourced at one of your FortiGate EC2 instances. What can you do to achieve this goal?
Options
- AUse AWS CloudTrail to capture and then examine traffic from the EC2 instance.
- BCreate a virtual public cloud (VPC) flow log at the network interface level for the EC2 instance.
- CAdd the EC2 instance as a target in CloudWatch to collect its traffic logs.
- DConfigure a network access analyzer scope with the EC2 instance as a match finding.
How the community answered
(34 responses)- A6% (2)
- B76% (26)
- C15% (5)
- D3% (1)
Explanation
VPC Flow Logs are designed to capture metadata about IP traffic to and from network interfaces in a VPC, including those attached to EC2 instances such as FortiGate appliances. Creating a flow log at the network interface level for the FortiGate EC2 instance lets you collect detailed information (source/destination IPs, ports, protocol, action, bytes, etc.) for all traffic sourced from and going to that instance, which you can then analyze in CloudWatch Logs or S3.
Topics
Community Discussion
No community discussion yet for this question.