nse8_812 Exam QuestionsBrowse all questions from this exam

nse8_812 — Question 31


Which two statements are correct on a FortiGate using the FortiGuard Outbreak Protection Service (VOS)? (Choose two.)

Show Answer
Correct Answer: C, E

The antivirus database queries FortiGuard with the hash of a scanned file, and the hash signatures are obtained from the FortiGuard Global Threat Intelligence database.

Discussion

4 comments
Sign in to comment
GoluxOptions: CD
Jan 3, 2024

CD The hashes are obtained from third party database

Viewable8041Options: CE
Sep 5, 2023

https://docs.fortinet.com/document/fortigate/7.4.1/administration-guide/889364/fortiguard-outbreak-prevention First paragraph

Pat1361Options: CD
Jul 17, 2024

quoting from docs.Fortinet "The hash signatures are obtained from external sources such as VirusTotal, Symantec, Kaspersky, and other third-party websites and services." so E is incorrect. C 100% correct E is correct because you enable VoS under the antivirus profile so AV engine must be enabled.

ac89lOptions: CE
Jan 23, 2024

https://docs.fortinet.com/document/fortigate/7.4.1/administration-guide/889364/fortiguard-outbreak-prevention -Enabling the AV engine scan is not required to use this feature. -The hash signatures are obtained from FortiGuard's Global Threat Intelligence database

ac89l
Jan 23, 2024

A wrong: FortiGuard VOS can be used in both proxy-based and flow-based policy inspections across all supported protocols. B is suspicious and tricky: As If FortiGuard returns a match, the scanned file is deemed to be malicious, not if the "third-party AV database" returns a match, while on the other hand, the third-party malware hash signatures curated by FortiGuard. C 100% correct: The antivirus database queries FortiGuard with the hash of a scanned file D wrong: Enabling the AV engine scan is not required to use this feature. E 100% correct: The hash signatures are obtained from FortiGuard's Global Threat Intelligence database And all according to this: https://docs.fortinet.com/document/fortigate/7.4.2/administration-guide/889364/fortiguard-outbreak-prevention