ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 59 - FCP_FGT_AD-7.4 discussion

Report
Export

A FortiGate administrator is required to reduce the attack surface on the SSL VPN portal.

Which SSL timer can you use to mitigate a denial of service (DoS) attack?

A.

SSL VPN dcls-hello-timeout

Answers
A.

SSL VPN dcls-hello-timeout

B.

SSL VPN http-request-header-timeout

Answers
B.

SSL VPN http-request-header-timeout

C.

SSL VPN login-timeout

Answers
C.

SSL VPN login-timeout

D.

SSL VPN idle-timeout

Answers
D.

SSL VPN idle-timeout

Suggested answer: B

Explanation:

The SSL VPN http-request-header-timeout timer is used to mitigate denial of service (DoS) attacks by limiting the amount of time the FortiGate waits for the client to send an HTTP request header after a connection is established. This helps reduce the attack surface by preventing potential attacks that exploit prolonged connection times without fully completing requests.

asked 12/11/2024
Dave Stacey
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first