NSE7_PBC-7.2 · Question #65
When adding the Amazon Web Services (AWS) account to the FortiCNP, which three mandatory configuration steps must you follow? (Choose three.)
The correct answer is A. Add AWS accounts through FortiCNP. C. Accept FortiCNP to create CloudTrail for the account E. Launch the CloudFormation template. When adding the Amazon Web Services (AWS) account to the FortiCNP, you must follow these three mandatory configuration steps: - Add AWS accounts through FortiCNP. This is the first step to enable cloud protection for your AWS account. You can add one or multiple accounts…
Question
When adding the Amazon Web Services (AWS) account to the FortiCNP, which three mandatory configuration steps must you follow? (Choose three.)
Options
- AAdd AWS accounts through FortiCNP.
- BEnable cloud protection through AWS Guard Duty and AWS Inspector
- CAccept FortiCNP to create CloudTrail for the account
- DEnable cross-reg Ion aggregation
- ELaunch the CloudFormation template.
How the community answered
(52 responses)- A79% (41)
- B6% (3)
- D15% (8)
Explanation
When adding the Amazon Web Services (AWS) account to the FortiCNP, you must follow these three mandatory configuration steps: - Add AWS accounts through FortiCNP. This is the first step to enable cloud protection for your AWS account. You can add one or multiple accounts automatically or manually. You need to provide the AWS account ID and a name for the account. You also need to select the optional permissions to be granted to FortiCNP as needed. - Accept FortiCNP to create CloudTrail for the account. This is required for FortiCNP to collect and analyze the AWS API calls and events. You can choose to let FortiCNP create a CloudTrail for the account or use an existing one. You also need to specify the aggregation region for the - Launch the CloudFormation template. This is required for FortiCNP to create a stack and a role in your AWS account. The stack contains the resources that FortiCNP needs to access and monitor your AWS account. The role allows FortiCNP to assume it and perform actions on your behalf. You need to enter a custom or default role name and a unique UUID that is designated for your company on FortiCNP.
Topics
Community Discussion
No community discussion yet for this question.