Fortinet
NSE8_812 · Question #108
You have deployed several perimeter FortiGate devices with internal segmentation FortiGate devices behind them. All FortiGate devices are logging to FortiAnalyzer. When you search the logs in…
The correct answer is A. Disable DNS events logging in FortiGate in the config log fortianalyzer filter section. D. Configure the internal FortiGate devices to communicate to FortiGuard using port 8888. See the full explanation below for the reasoning.
Question
You have deployed several perimeter FortiGate devices with internal segmentation FortiGate devices behind them. All FortiGate devices are logging to FortiAnalyzer. When you search the logs in FortiAnalyzer for denied traffic, you see numerous log messages, as shown in the exhibit, on your perimeter FortiGate device only. Which two actions will reduce the number of these log messages? (Choose two.)
Options
- ADisable DNS events logging in FortiGate in the config log fortianalyzer filter section.
- BApply an application control profile to the perimeter FortiGate devices that does not inspect DNS traffic to the outbound firewall policy.
- CRemove DNS signatures from the IPS profile applied to the outbound firewall policy.
- DConfigure the internal FortiGate devices to communicate to FortiGuard using port 8888.
How the community answered
(38 responses)- A76% (29)
- B11% (4)
- C13% (5)
Community Discussion
No community discussion yet for this question.