Fortinet FCP - FortiAnalyzer 7.4 Administrator FCP_FAZ_AD-7.4 Question # 23 Topic 3 Discussion

Fortinet FCP - FortiAnalyzer 7.4 Administrator FCP_FAZ_AD-7.4 Question # 23 Topic 3 Discussion

FCP_FAZ_AD-7.4 Exam Topic 3 Question 23 Discussion:
Question #: 23
Topic #: 3

What happens when the IOC breach detection engine on FortiAnalyzer finds web logs that match a blocklisted IP address?


A.

The endpoint is marked as Compromised and. optionally, can be put in quarantine.


B.

FortiAnalyzer flags the associated host for further analysis.


C.

A new Infected entry is added for the corresponding endpoint.


D.

The detection engine classifies those logs as Suspicious


Get Premium FCP_FAZ_AD-7.4 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.