View all questions & answers for the NSE 6 - OT Security 7.2 Architect Exam Materials exam


Question 67 Discussion

An organization has deployed an entry-level FortiGate device in their OT network. The administrator is looking for a simple solution to detect and block all network intrusions in that specific part of the network, without any false positive activities. Which solution should the administrator use to achieve this goal? (Choose one answer)

  • A. Enable IPS and use the regular signature database.
  • B. Enable IPS and use the protected signature database.
  • C. Enable IPS and use the extreme signature database.
  • D. Enable IPS and use the extended signature database.
Correct Answer: A

Brave-Dump Clients Votes

A 75%
B 25%

Comments



Frederik Jean-Gagnon 2025-11-11 03:23:44

Selected Answers: A


Extended raise the risk of false positives


mahmoud mostafa 2025-11-11 10:02:56

Selected Answers: B


protected signature database is specifically curated by FortiGuard Labs to include only signatures with a very low risk of false positives. This makes it ideal for critical environments like OT networks where unintended network disruptions (false positives) are unacceptable.


Sergei 2026-01-19 11:22:38

Selected Answers: A


This is about entry models of Fortigate with limited resources. the extended database is available on devices with more SPUs.


Majd al deen 2026-01-21 11:27:37

Selected Answers: A


A