Refer to the exhibit.
Based on the Security Fabric automation settings, what action will be taken on compromised endpoints?
Based on the Security Fabric automation settings shown in the exhibit:
The automation stitch is configured with a trigger for a 'Compromised Host.'
The action specified for this trigger is 'Quarantine FortiClient via EMS.'
This indicates that when an endpoint is detected as compromised, FortiClient EMS will quarantine the endpoint as part of the automation process.
Therefore, the action taken on compromised endpoints will be to quarantine them through EMS.
Reference
FortiGate Security 7.2 Study Guide, Automation Stitches and Actions Section
Fortinet Documentation on Configuring Automation Stitches and Quarantine Actions
Whitney
12 months agoEssie
1 years agoVelda
12 months agoGraciela
12 months agoMarkus
1 years agoHollis
11 months agoDyan
12 months agoMaybelle
12 months agoMozell
12 months agoLynette
12 months agoCassandra
12 months agoXochitl
1 years agoRosamond
1 years agoDalene
1 years agoSylvia
1 years agoTeresita
12 months agoAleisha
1 years agoWillard
1 years agoAleisha
1 years agoTegan
1 years agoLynda
1 years agoMabel
1 years agoFrederick
1 years agoMireya
1 years ago