Which two items must they configure on their FortiGate to accomplish this?

An administrator wants to monitor their network for any probing attempts aimed to exploit existing vulnerabilities in their servers.

Which two items must they configure on their FortiGate to accomplish this? (Choose two.)
A . A web application firewall profile to check protocol constraints
B . A DoS policy, and log all UDP and TCP scan attempts
C . An IPS sensor to monitor all signatures applicable to the server
D . An application control profile, and set all application signatures to monitor

Answer: B,C

Explanation:

B. Configure a DoS policy and log all UDP and TCP scan attempts.

A Denial of Service (DoS) policy can help monitor and mitigate scan attempts. By logging UDP and TCP scan attempts, the administrator can identify potential probing activities.

C. Configure an IPS sensor to monitor all signatures applicable to the server.

An Intrusion Prevention System (IPS) sensor is crucial for monitoring and preventing various types of attacks, including those targeting server vulnerabilities. Monitoring all relevant IPS signatures enhances the detection capabilities.

So, the correct choices are indeed B and C.

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments