QuestionQ7

FortiEDR security settings and policies

When implementing an application block policy in FortiEDR, which three actions, in order, reflect the correct operational sequence?

Drag & Drop
Enable the blocklist rule on the application control policy.
Add applications to the application control manager.
Create a new application group.
Assign collector groups to the policy.
Assign the application group to the collectors.
Explanation

Implementing an application block in FortiEDR begins with adding the target applications into the Application Control Manager (SECURITY SETTINGS > Application Control), where they are automatically placed into a user-defined application group. The blocklist rule must then be enabled on the Application Control policy for blocking to take effect. Finally, collector groups are assigned to that policy so that the block is actually enforced on the endpoints running those collectors.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!