Security Rating FortiOS 6.0
FBSP | Name | Status | Update | Products |
---|---|---|---|---|
SH01.1 |
Unsecure Protocol - Telnet |
Mod
|
Interfaces which are classified as "WAN" and are used by a policy should not allow Telnet administrative access. | FortiGate FortiAnalyzer |
SH01.2 |
Unsecure Protocol - HTTP |
Mod
|
Interfaces used by a policy should not allow HTTP administrative access. | FortiGate FortiManager FortiAnalyzer |
ND08.1 |
Interface Classification |
Mod
|
All interfaces used by a policy should be classified as either "LAN", "WAN", or "DMZ". | FortiGate |
EM01.1 |
Endpoint Registration |
Mod
|
Interfaces which are classified as "LAN" and are used by a policy should have FortiTelemetry enabled. | FortiGate |
ND07.1 |
Device Discovery |
Mod
|
Interfaces which are classified as "LAN" or "DMZ" and are used by a policy should have device detection enabled. | FortiGate |
ND09.1 |
Detect Botnet Connections |
Mod
|
Interfaces which are classified as "WAN" and are used by a policy should block or monitor outgoing connections to botnet sites. | FortiGate |