NSE7_OTS-7.2 · Question #83
An organization has deployed an entry-level FortiGate device in their operational technology (OT) network. The administrator is looking for a simple solution to detect and block all network…
The correct answer is D. Enable the industrial signature database in the IPS global setting. Enabling the IPS industrial signature database focuses detection on OT/ICS protocols and known attack patterns, giving accurate blocking with minimal false positives on an entry-level FortiGate.
Question
An organization has deployed an entry-level FortiGate device in their operational technology (OT) network. The administrator is looking for a simple solution to detect and block all network intrusions in that specific part of the network without any false positive activities. Which solution should the administrator use to achieve this goal?
Options
- AConfigure a local-in firewall policy.
- BBlock all foreign inbound traffic.
- CEnable intrusion prevention system (IPS) and use the regular signature database.
- DEnable the industrial signature database in the IPS global setting.
How the community answered
(24 responses)- A17% (4)
- B4% (1)
- C8% (2)
- D71% (17)
Explanation
Enabling the IPS industrial signature database focuses detection on OT/ICS protocols and known attack patterns, giving accurate blocking with minimal false positives on an entry-level FortiGate.
Topics
Community Discussion
No community discussion yet for this question.