Refer to the exhibit.
Based on the Security Fabric automation settings, what action will be taken on compromised endpoints?
Based on the Security Fabric automation settings shown in the exhibit:
The automation stitch is configured with a trigger for a 'Compromised Host.'
The action specified for this trigger is 'Quarantine FortiClient via EMS.'
This indicates that when an endpoint is detected as compromised, FortiClient EMS will quarantine the endpoint as part of the automation process.
Therefore, the action taken on compromised endpoints will be to quarantine them through EMS.
Reference
FortiGate Security 7.2 Study Guide, Automation Stitches and Actions Section
Fortinet Documentation on Configuring Automation Stitches and Quarantine Actions
Whitney
11 months agoEssie
12 months agoVelda
11 months agoGraciela
11 months agoMarkus
12 months agoHollis
11 months agoDyan
11 months agoMaybelle
11 months agoMozell
11 months agoLynette
11 months agoCassandra
12 months agoXochitl
12 months agoRosamond
12 months agoDalene
1 years agoSylvia
1 years agoTeresita
12 months agoAleisha
12 months agoWillard
12 months agoAleisha
12 months agoTegan
12 months agoLynda
12 months agoMabel
12 months agoFrederick
12 months agoMireya
12 months ago