nerdexam
Fortinet

NSE7_OTS-7.2 · Question #83

An organization has deployed an entry-level FortiGate device in their operational technology (OT) network. The administrator is looking for a simple solution to detect and block all network…

The correct answer is D. Enable the industrial signature database in the IPS global setting. Enabling the IPS industrial signature database focuses detection on OT/ICS protocols and known attack patterns, giving accurate blocking with minimal false positives on an entry-level FortiGate.

FortiGate OT Security

Question

An organization has deployed an entry-level FortiGate device in their operational technology (OT) network. The administrator is looking for a simple solution to detect and block all network intrusions in that specific part of the network without any false positive activities. Which solution should the administrator use to achieve this goal?

Options

  • AConfigure a local-in firewall policy.
  • BBlock all foreign inbound traffic.
  • CEnable intrusion prevention system (IPS) and use the regular signature database.
  • DEnable the industrial signature database in the IPS global setting.

How the community answered

(24 responses)
  • A
    17% (4)
  • B
    4% (1)
  • C
    8% (2)
  • D
    71% (17)

Explanation

Enabling the IPS industrial signature database focuses detection on OT/ICS protocols and known attack patterns, giving accurate blocking with minimal false positives on an entry-level FortiGate.

Topics

#IPS#industrial signature database#OT intrusion detection#false positives

Community Discussion

No community discussion yet for this question.

Full NSE7_OTS-7.2 Practice