nerdexam
Fortinet

FCP_FGT_AD-7.4 · Question #53

Which engine handles application control traffic on the next-generation firewall (NGFW) FortiGate?

The correct answer is B. Intrusion prevention system engine. Unlike other forms of security profiles, such as web filtering or antivirus, application control is not applied by a proxy. It uses an IPS engine to analyze network traffic and detect application traffic, even if the application is using standard or non-standard protocols and…

Content inspection

Question

Which engine handles application control traffic on the next-generation firewall (NGFW) FortiGate?

Options

  • AInternet Service Database (ISDB) engine
  • BIntrusion prevention system engine
  • CAntivirus engine
  • DApplication control engine

How the community answered

(28 responses)
  • A
    4% (1)
  • B
    75% (21)
  • C
    14% (4)
  • D
    7% (2)

Explanation

Unlike other forms of security profiles, such as web filtering or antivirus, application control is not applied by a proxy. It uses an IPS engine to analyze network traffic and detect application traffic, even if the application is using standard or non-standard protocols and ports. It doesn’t operate using built-in protocol states. It matches patterns in the entire byte stream of the packet, and then looks for patterns.

Topics

#application control#NGFW#IPS engine#traffic inspection

Community Discussion

No community discussion yet for this question.

Full FCP_FGT_AD-7.4 Practice