Book3 Flashcards
IPSEC - What is the difference between “On demand vs On Idle” for DPD
The critiria to send the probe, one only sends when there’s no traffic received while the other always sends
SECURITY FABRIC - CONFIGURATION-SYNC (CSF) - What’s the default?
Default is to sync.
SECURITY FABRIC - How do you disable syncronization
set configuration-sync local
SECURITY FABRIC - What configuration elements is synced in the fabric by default?
FortyAnalyzer logging Central Management Sandbox inspection FortiClient EMS
TCP - SESSIONS - What is the status for NONE
CERO 0
TCP - SESSIONS - Status # 3,4,5
SYN &SYN/ACK FIN_WAIT TIME_WAIT
TCP - SESSIONS - What is the status for ESTABLISHED (EXCHANGING INFO)
ONE 1
TCP - SESSIONS - What is the status for SYN_SENT
TWO 2
TCP - SESSIONS -Status # 6 and 7?
CLOSE and CLOSE_WAIT
NGFW - MODE - POLICY - What are the minimum 2 policies that you must configure?
Security Policy and Inspection/authentication