Which two statements are correct?

Refer to the exhibit

The exhibit shows the results of a FortiCNP registry scan

Which two statements are correct? (Choose two)
A . When adding a repository, you can leave the Tag section blank to scan all images-
B . The registry scan is part of the FortiCNP cloud protection.
C . The registry scan is part of the FortiCNP container protection.
D . When adding a repository, you can add a minimum number of images to be imported through the CAP section.

Answer: A C

Explanation

The exhibit shows the results of a FortiCNP registry scan, which is part of the FortiCNP container protection. FortiCNP’s Container Protection provides deep visibility into the security posture of container registries and images1. The registry scan utilizes Common Vulnerabilities and Exposures (CVE) index regularly updated by NVD to detect underlying vulnerabilities, security flaws, and provides security best practices2. The registry scan is performed at the registry level, and it can scan all images in a repository if the Tag section is left blank when adding a repository2. The CAP section stands for Container Assurance Policy, which defines the minimum number of images to be scanned per repository3. Therefore, the correct statements are A and C. References: Container Image Scan | FortiCNP 22.3.a, FortiCNP, Cloud Native Application Protection Platform | FortiCNP

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments