FCSS_EFW_AD-7.4 · Question #47
What is the initial step performed by FortiGate when handling the first packets of a session?
The correct answer is C. Security inspections such as ACL, HPE, and IP integrity header checking. When FortiGate processes the first packets of a session, it follows a sequence of steps to determine how the traffic should be handled before establishing a session. The initial step Access Control List (ACL) checks: Determines if the traffic should be allowed or blocked based…
Question
What is the initial step performed by FortiGate when handling the first packets of a session?
Options
- AInstallation of the session key in the network processor (NP)
- BData encryption and decryption
- CSecurity inspections such as ACL, HPE, and IP integrity header checking
- DOffloading the packets directly to the content processor (CP)
How the community answered
(25 responses)- A8% (2)
- C80% (20)
- D12% (3)
Explanation
When FortiGate processes the first packets of a session, it follows a sequence of steps to determine how the traffic should be handled before establishing a session. The initial step Access Control List (ACL) checks: Determines if the traffic should be allowed or blocked based on predefined security rules. Hardware Packet Engine (HPE) inspections: Ensures that packet headers are valid and comply with protocol standards. IP Integrity Header Checking: Verifies if the IP headers are intact and not malformed or spoofed. Once these security inspections are completed and the session is validated, FortiGate then installs the session in hardware (if offloading is enabled) or processes it in software.
Topics
Community Discussion
No community discussion yet for this question.