NETSEC-PRO · Question #67
Which GlobalProtect configuration is recommended for granular security enforcement of remote user device posture?
The correct answer is A. Configuring host information profile (HIP) checks for all mobile users. Host Information Profile (HIP) checks are used in GlobalProtect to collect and evaluate endpoint posture (OS, patch level, AV status) to enforce granular security policies for remote users. The HIP feature collects information about the host and can be used in security policies t
Question
Which GlobalProtect configuration is recommended for granular security enforcement of remote user device posture?
Options
- AConfiguring host information profile (HIP) checks for all mobile users
- BConfiguring a rule that blocks the ability of users to disable GlobalProtect while accessing internal
- CImplementing multi-factor authentication (MFA) for all users attempting to access internal
- DApplying log at session end to all GlobalProtect Security policies
How the community answered
(27 responses)- A74% (20)
- B15% (4)
- C4% (1)
- D7% (2)
Explanation
Host Information Profile (HIP) checks are used in GlobalProtect to collect and evaluate endpoint posture (OS, patch level, AV status) to enforce granular security policies for remote users. The HIP feature collects information about the host and can be used in security policies to enforce posture-based access control. This ensures only compliant endpoints can access sensitive resources. This enables fine-grained, context-aware access decisions beyond user identity alone.
Topics
Community Discussion
No community discussion yet for this question.