ExamGecko
Question list
Search
Search

Question 28 - NSE4_FGT-7.2 discussion

Report
Export

A network administrator has enabled SSL certificate inspection and antivirus on FortiGate. When downloading an EICAR test file through HTTP, FortiGate detects the virus and blocks the file. When downloading the same file through HTTPS, FortiGate does not detect the virus and the file can be downloaded.

What is the reason for the failed virus detection by FortiGate?

A.
The website is exempted from SSL inspection.
Answers
A.
The website is exempted from SSL inspection.
B.
The EICAR test file exceeds the protocol options oversize limit.
Answers
B.
The EICAR test file exceeds the protocol options oversize limit.
C.
The selected SSL inspection profile has certificate inspection enabled.
Answers
C.
The selected SSL inspection profile has certificate inspection enabled.
D.
The browser does not trust the FortiGate self-signed CA certificate.
Answers
D.
The browser does not trust the FortiGate self-signed CA certificate.
Suggested answer: A, C

Explanation:

SSL Inspection Profile, on the Inspection method there are 2 options to choose from, SSL Certificate Inspection or Full SSL Inspection. FG SEC 7.2 Studi Guide: Full SSL Inspection level is the only choice that allows antivirus to be effective.

asked 18/09/2024
Kevin Lizano
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first