An administrator wants to use FortiSoC and SOAR features on a FortiAnalyzer device to detect and block any unauthorized access to FortiGate devices in an OT network.
Which two statements are true about FortiSoC and SOAR features on FortiAnalyzer? (Choose two.)
A. Each playbook can include multiple triggers.
B. You cannot use Windows and Linux hosts security events with FortiSoC.
C. You must set correct operator in event handler to trigger an event.
D. You can automate SOC tasks through playbooks.
正解:C,D
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
Refer to the exhibits. Which statement about some of the generated report elements from FortiAnalyzer is true?

A. The report confirms Modbus and IEC 104 are the key applications crossing the network.
B. FortiGate collects the logs and generates the report to FortiAnalyzer.
C. This report is predefined and is not available for customization.
D. The file types confirm the infected applications on the PLCs.
正解:A
質問 3:
When you create a user or host profile, which three criteria can you use? (Choose three.)
A. Host or user attributes
B. An existing access control policy
C. Administrative group membership
D. Host or user group memberships
E. Location
正解:A,D,E
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
An OT administrator has configured FSSO and local firewall authentication. A user who is part of a user group is not prompted for credentials during authentication.
What is a possible reason?
A. FortiNAC determined the user by DHCP fingerprint method
B. The user was determined by Security Fabric
C. Two-factor authentication is not configured with RADIUS authentication method
D. FortiGate determined the user by passive authentication
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
An organization has deployed an entry-level FortiGate device in their operational technology (OT) network. The administrator is looking for a simple solution to detect and block all network intrusions in that specific part of the network without any false positive activities.
Which solution should the administrator use to achieve this goal?
A. Enable intrusion prevention system (IPS) and use the regular signature database.
B. Block all foreign inbound traffic.
C. Configure a local-in firewall policy.
D. Enable the industrial signature database in the IPS global setting.
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
Which three common breach points can you find in a typical OT environment? (Choose three.)
A. Global hat
B. RTU exploits
C. VLAN exploits
D. Black hat
E. Hard hat
正解:B,D,E
解説: (Pass4Test メンバーにのみ表示されます)
質問 7:
Refer to the exhibit. You need to configure VPN user access for supervisors at the breach and HQ sites using the same soft FortiToken. Each site has a FortiGate VPN gateway.
What must you do to achieve this objective?

A. You must use a FortiAuthenticator.
B. You must use the user self-registration server.
C. You must register the same FortiToken on more than one FortiGate.
D. You must use a third-party RADIUS OTP server.
正解:A
質問 8:
Refer to the exhibit, which shows a non-protected OT environment.

An administrator needs to implement proper protection on the OT network. Which three steps should an administrator take to protect the OT network? (Choose three.)
A. Deploy a FortiGate device within each ICS network.
B. Deploy an edge FortiGate between the internet and an OT network as a one-arm sniffer.
C. Use segmentation
D. Configure firewall policies with web filter to protect the different ICS networks.
E. Configure firewall policies with industrial protocol sensors
正解:A,C,E
1108 お客様のコメント





藤原** -
電車などの隙間時間もデスクでも、PCでもスマホでも出来るようなので読みやすいです