NSE7_OTS-7.2 · Question #43
Which two statements are true when you deploy FortiGate as an offline IDS? (Choose two.)
The correct answer is A. FortiGate receives traffic from configured port mirroring. C. FortiGate acts as network sensor. FortiGate receives traffic from configured port mirroring In an offline IDS configuration, a FortiGate is typically set up to receive a copy of network traffic from specific ports or VLANs through port mirroring, allowing it to analyze the data without impacting the normal…
Question
Which two statements are true when you deploy FortiGate as an offline IDS? (Choose two.)
Options
- AFortiGate receives traffic from configured port mirroring.
- BNetwork traffic goes through FortiGate.
- CFortiGate acts as network sensor.
- DNetwork attacks can be detected and blocked.
How the community answered
(28 responses)- A82% (23)
- B14% (4)
- D4% (1)
Explanation
FortiGate receives traffic from configured port mirroring In an offline IDS configuration, a FortiGate is typically set up to receive a copy of network traffic from specific ports or VLANs through port mirroring, allowing it to analyze the data without impacting the normal network flow. FortiGate acts as a network sensor Since it is passively monitoring the traffic, FortiGate can detect malicious activity based on its pre- defined intrusion detection signatures without blocking the traffic.
Topics
Community Discussion
No community discussion yet for this question.