NSE4 · Question #210
Which of the following items represent the minimum configuration steps an administrator must perform to enable Data Leak Prevention for traffic flowing through the FortiGate unit? (Select all that…
The correct answer is A. Assign a DLP sensor in a firewall policy. D. Define one or more DLP rules. E. Define a DLP sensor. This question outlines the essential configuration steps required to enable and activate Data Leak Prevention (DLP) for network traffic on a FortiGate unit.
Question
Which of the following items represent the minimum configuration steps an administrator must perform to enable Data Leak Prevention for traffic flowing through the FortiGate unit? (Select all that apply.)
Options
- AAssign a DLP sensor in a firewall policy.
- BApply one or more DLP rules to a firewall policy.
- CEnable DLP globally using the config sys dlp command in the CLI.
- DDefine one or more DLP rules.
- EDefine a DLP sensor.
- FApply a DLP sensor to a DoS sensor policy.
How the community answered
(25 responses)- A84% (21)
- B8% (2)
- C4% (1)
- F4% (1)
Why each option
This question outlines the essential configuration steps required to enable and activate Data Leak Prevention (DLP) for network traffic on a FortiGate unit.
After defining DLP rules and sensors, the DLP sensor must be assigned to a firewall policy to inspect the traffic passing through that policy for data leakage.
DLP rules are applied *to* a DLP sensor, and then the sensor is assigned to a policy; rules are not directly applied to a firewall policy independently of a sensor.
DLP is enabled by configuring sensors and applying them to policies, not by a global CLI command `config sys dlp`.
DLP functionality relies on specific rules that define what sensitive data to look for (e.g., credit card numbers, patterns), making rule definition a fundamental prerequisite.
DLP rules are grouped into a DLP sensor, which acts as a container for these rules and dictates actions upon a match, making its definition necessary before application.
A DLP sensor is applied to a *firewall policy* for data inspection, not to a DoS sensor policy, which serves a different security function.
Concept tested: FortiGate DLP configuration steps
Source: https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/469436/data-leak-prevention-dlp
Topics
Community Discussion
No community discussion yet for this question.