NSE4 · Question #138
A FortiAnalyzer device could use which security method to secure the transfer of log data from FortiGate devices?
The correct answer is B. IPSec. FortiAnalyzer can use IPSec to establish a secure, encrypted tunnel for transferring log data from FortiGate devices, ensuring confidentiality and integrity.
Question
A FortiAnalyzer device could use which security method to secure the transfer of log data from FortiGate devices?
Options
- ASSL
- BIPSec
- Cdirect serial connection
- DS/MIME
How the community answered
(52 responses)- A2% (1)
- B94% (49)
- D4% (2)
Why each option
FortiAnalyzer can use IPSec to establish a secure, encrypted tunnel for transferring log data from FortiGate devices, ensuring confidentiality and integrity.
While SSL/TLS provides encryption for certain services, IPSec is the primary and recommended method for securing the dedicated log transfer tunnel between FortiGate and FortiAnalyzer.
IPSec VPN is a robust and widely used method to create secure, encrypted tunnels between FortiGate and FortiAnalyzer devices, protecting log data in transit.
A direct serial connection is used for console access or initial setup, not for continuous, high-volume, secure log data transfer over a network.
S/MIME is a standard for securing email communications, not for securing log data transfer between network security devices.
Concept tested: FortiGate-FortiAnalyzer log security (IPSec)
Source: https://docs.fortinet.com/document/fortianalyzer/7.4.0/administration-guide/607248/connecting-fortianalyzer-to-your-fortinet-devices
Topics
Community Discussion
No community discussion yet for this question.