FCSS_NST_SE-7.4 · Question #78
Refer to the exhibit. Antivirus is unable to detect an infected file downloaded through HTTPS. Part of the configuration used for antivirus inspection is shown in the exhibit. Which configuration…
The correct answer is D. Enable SSL deep inspection. You must switch from mere certificate inspection to full SSL deep inspection on the HTTPS profile so that the FortiGate can decrypt the traffic and pass it through the AV engine. In practice this means editing the SSL/SSH profile and setting the HTTPS inspection mode to…
Question
Refer to the exhibit. Antivirus is unable to detect an infected file downloaded through HTTPS. Part of the configuration used for antivirus inspection is shown in the exhibit. Which configuration changes can be performed to inspect HTTPS?
Exhibit
Options
- ASet a different antivirus database.
- BIncrease the maximum number of subdirectories and nested archives.
- CDisable the emulator setting.
- DEnable SSL deep inspection.
How the community answered
(56 responses)- A11% (6)
- B2% (1)
- C5% (3)
- D82% (46)
Explanation
You must switch from mere certificate inspection to full SSL deep inspection on the HTTPS profile so that the FortiGate can decrypt the traffic and pass it through the AV engine. In practice this means editing the SSL/SSH profile and setting the HTTPS inspection mode to deep-inspection (and ensuring your CA cert is installed on the clients).
Topics
Community Discussion
No community discussion yet for this question.
