nerdexam
Fortinet

FCP_FGT_AD-7.4 · Question #43

When FortiGate performs SSL/SSH full inspection, you can decide how it should react when it detects an invalid certificate. Which three actions are valid actions that FortiGate can perform when it…

The correct answer is A. Allow & Warning B. Trust & Allow E. Block. When a certificate fails for any of the reasons above, you can configure any of the following - Keep untrusted & Allow: FortiGate allows the website and lets the browser decide the action to FortiGate takes the certificate as untrusted. - Block: FortiGate blocks the content of…

Content inspection

Question

When FortiGate performs SSL/SSH full inspection, you can decide how it should react when it detects an invalid certificate. Which three actions are valid actions that FortiGate can perform when it detects an invalid certificate? (Choose three.)

Options

  • AAllow & Warning
  • BTrust & Allow
  • CAllow
  • DBlock & Warning
  • EBlock

How the community answered

(45 responses)
  • A
    76% (34)
  • C
    16% (7)
  • D
    9% (4)

Explanation

When a certificate fails for any of the reasons above, you can configure any of the following - Keep untrusted & Allow: FortiGate allows the website and lets the browser decide the action to FortiGate takes the certificate as untrusted. - Block: FortiGate blocks the content of the site. - Trust & Allow: FortiGate allows the website and takes the certificate as trusted.

Topics

#SSL inspection#full inspection#invalid certificate#certificate action

Community Discussion

No community discussion yet for this question.

Full FCP_FGT_AD-7.4 Practice