Refer to the exhibits.
Based on the FortiGate Security Fabric settings shown in the exhibits, what must an administrator do on the EMS server to successfully quarantine an endpoint. when it is detected as a compromised host (loC)?
Based on the FortiGate Security Fabric settings shown in the exhibits, to successfully quarantine an endpoint when it is detected as a compromised host (IOC), the following step is required:
Enable Remote HTTPS Access to EMS: This setting allows FortiGate to communicate securely with FortiClient EMS over HTTPS. Remote HTTPS access is essential for the quarantine functionality to operate correctly, enabling the EMS server to receive and act upon the quarantine commands from FortiGate.
Therefore, the administrator must enable remote HTTPS access to EMS to allow the quarantine process to function properly.
Reference
FortiGate Infrastructure 7.2 Study Guide, Security Fabric and Integration with EMS Sections
Fortinet Documentation on Enabling Remote HTTPS Access to FortiClient EMS
Marta
9 months agoGeraldo
8 months agoBoris
9 months agoShawana
9 months agoToshia
9 months agoElbert
9 months agoSol
10 months agoCarmen
10 months agoMarylin
9 months agoAileen
9 months agoAlishia
10 months agoKenny
9 months agoMabel
9 months agoNickolas
10 months agoMalissa
10 months agoYvette
10 months agoMariann
10 months agoJesusita
11 months agoJacob
11 months ago