Security Fabric Flashcards
What are the three attributes of the Security Fabric
Broad, Integrated, Automated
What combination of Forti devices must appear in the core?
Two FTG’s one root and one downstream and one FortAnalyzer (can be cloud)
What does ISFW stand for?
Internal Segmentation Firewall (ISFW)
How do you configure the root FTG for the Security Fabric?
Enable Fabric Connection on the appropriate Int
Enable Security Fabric Connector (serve as root)
Config FortiAnalyzer
Optional Pre auth down stream devices with serial number
How do you enable the security fabric for downstream devices?
Turn the security fabric connection on the required interfaces
enable join security fabric connection (join existing fabric)
specify the root IP
What is object synchronization?
Allows the root to sync objects like addresses, services and schedules.
What does set configuration-sync local do on a down stream security fabric device>
It tells the downstream device to not participate in the object synchronization.
What are the two ways to identify devices in the security fabric?
Agentless and Agent (FortiClient)
For Agentless endpoint ID how must it be connected to FTG?
It must be on the same L2 segment.
What is an automation stitch?
Admin-defined automated workflows.