ExamGecko
Question list
Search
Search

List of questions

Search

Question 53 - FCP_FCT_AD-7.2 discussion

Report
Export

Refer to the exhibit.

Based on the settings shown in the exhibit what action will FortiClient take when it detects that a user is trying to download an infected file?

A.
Blocks the infected files as it is downloading
Answers
A.
Blocks the infected files as it is downloading
B.
Quarantines the infected files and logs all access attempts
Answers
B.
Quarantines the infected files and logs all access attempts
C.
Sends the infected file to FortiGuard for analysis
Answers
C.
Sends the infected file to FortiGuard for analysis
D.
Allows the infected file to download without scan
Answers
D.
Allows the infected file to download without scan
Suggested answer: D

Explanation:

Block Malicious Website has nothing to do with infected files. Since Realtime Protection is OFF, it will be allowed without being scanned.

Based on the settings shown in the exhibit:

Realtime Protection: OFF

Dynamic Threat Detection: OFF

Block malicious websites: ON

Threats Detected: 75

The 'Realtime Protection' setting is crucial for preventing infected files from being downloaded and executed. Since 'Realtime Protection' is OFF, FortiClient will not actively scan files being downloaded. The setting 'Block malicious websites' is intended to prevent access to known malicious websites but does not scan files for infections.

Therefore, when a user tries to download an infected file, FortiClient will allow the file to download without scanning it due to the Realtime Protection being OFF.

Reference

FortiClient EMS 7.2 Study Guide, Antivirus Protection Section

Fortinet Documentation on FortiClient Real-time Protection Settings

asked 18/09/2024
Pedro Faro
29 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first