Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet Exam NSE6_FNC-7.2 Topic 6 Question 11 Discussion

Actual exam question for Fortinet's NSE6_FNC-7.2 exam
Question #: 11
Topic #: 6
[All NSE6_FNC-7.2 Questions]

During an evaluation of state-based enforcement, an administrator discovers that ports that should not be under enforcement have been added to enforcement groups. In which view would the administrator be able to determine who added the ports to the groups?

Show Suggested Answer Hide Answer
Suggested Answer: B

Study Guide p. 356: Any time FortiNAC changes network access for an endpoint, the change is documented on the Port Changes view. This provides an administrator with valuable information when validating control configurations and enforcement.

Contribute your Thoughts:

Carmela
21 hours ago
I'm going with B, the Admin Auditing view. Anything related to enforcement changes has to be there, right? Unless the admin was really sneaky and covered their tracks...
upvoted 0 times
...
Eun
11 days ago
Hmm, the Event Management view might be worth a look too. Who knows, maybe there's some juicy info hidden in there.
upvoted 0 times
I think the Admin Auditing view would be the best place to check for who added those ports.
upvoted 0 times
...
...
Moira
15 days ago
I'm not sure, but I think C) The Event Management view could also be helpful in this situation.
upvoted 0 times
...
Linwood
16 days ago
I agree, the Admin Auditing view is the way to go. It's the best place to track changes made by administrators.
upvoted 0 times
...
Glen
17 days ago
I agree with Lera, because the Admin Auditing view tracks all changes made by administrators.
upvoted 0 times
...
Kaycee
18 days ago
The Admin Auditing view seems like the obvious choice here. That's where I'd expect to find logs of administrative actions.
upvoted 0 times
Leonora
2 days ago
A) The Alarms view
upvoted 0 times
...
...
Lera
22 days ago
I think the answer is B) The Admin Auditing view.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77