Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet Exam NSE8_812 Topic 5 Question 34 Discussion

Actual exam question for Fortinet's NSE8_812 exam
Question #: 34
Topic #: 5
[All NSE8_812 Questions]

Which two statements are correct on a FortiGate using the FortiGuard Outbreak Protection Service (VOS)? (Choose two.)

Show Suggested Answer Hide Answer
Suggested Answer: C, E

c) The antivirus database queries FortiGuard with the hash of a scanned file. This is how the FortiGuard VOS service works. The FortiGate queries FortiGuard with the hash of a scanned file, and FortiGuard returns a list of known malware signatures that match the hash.

e) The hash signatures are obtained from the FortiGuard Global Threat Intelligence database. This is where the FortiGuard VOS service gets its hash signatures from. The FortiGuard Global Threat Intelligence database is updated regularly with new malware signatures.


Contribute your Thoughts:

Caprice
2 months ago
D is definitely correct. The AV engine scan must be enabled to use the FortiGuard VOS feature. No free lunch, folks!
upvoted 0 times
...
Selma
2 months ago
Haha, I bet the person who wrote this question was feeling pretty clever. 'FortiGuard Outbreak Protection Service' - sounds like something out of a sci-fi movie!
upvoted 0 times
Elli
1 months ago
User 1
upvoted 0 times
...
Earlean
1 months ago
User 2
upvoted 0 times
...
Hubert
1 months ago
User 1
upvoted 0 times
...
...
Malissa
2 months ago
I'm not sure about A and D. Can someone explain why they are incorrect?
upvoted 0 times
...
Celeste
2 months ago
I agree with you, Matt. I also believe E is correct because the hash signatures are obtained from the FortiGuard Global Threat Intelligence database.
upvoted 0 times
...
Katlyn
2 months ago
I'm pretty sure B is also correct. If the third-party AV database returns a match, the file is deemed malicious. This is how the VOS works, right?
upvoted 0 times
...
Aja
2 months ago
C and E are the correct statements. The FortiGuard VOS uses the hash of the scanned file to query the FortiGuard Global Threat Intelligence database.
upvoted 0 times
Elbert
2 months ago
Yes, that's right. It helps to obtain hash signatures from the threat intelligence database.
upvoted 0 times
...
Elbert
2 months ago
So the FortiGuard VOS uses the hash of the scanned file for queries?
upvoted 0 times
...
Elbert
2 months ago
C and E are correct.
upvoted 0 times
...
...
Matt
3 months ago
I think C is correct because the antivirus database queries FortiGuard with the hash of a scanned file.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77