nerdexam
Fortinet

FCSS_NST_SE-7.4 · Question #95

Refer to the exhibit, which displays the output of a real-time debug. Which statement accurately describes this output?

The correct answer is B. The server hostname was extracted either from the common name (CN) in the server certificate or. The hostname="training.fortinet.com" field only appears when FortiGate learns the HTTPS hostname via SNI (in the TLS Client Hello) or by parsing the server certificate's CN-it isn't gleaned from any HTTP headers over an encrypted tunnel.

Troubleshooting Methodology and Tools

Question

Refer to the exhibit, which displays the output of a real-time debug. Which statement accurately describes this output?

Exhibit

FCSS_NST_SE-7.4 question #95 exhibit

Options

  • AAccess to the requested website was allowed by web filter profile ftgd-allow.
  • BThe server hostname was extracted either from the common name (CN) in the server certificate or
  • CThe URL requested was detected to belong to FortiGuard category ID 255.
  • DThe urlfilter debug detected a category mismatch.

How the community answered

(41 responses)
  • A
    5% (2)
  • B
    78% (32)
  • C
    2% (1)
  • D
    15% (6)

Explanation

The hostname="training.fortinet.com" field only appears when FortiGate learns the HTTPS hostname via SNI (in the TLS Client Hello) or by parsing the server certificate's CN-it isn't gleaned from any HTTP headers over an encrypted tunnel.

Topics

#web filter#URL filter#server hostname extraction#SSL inspection

Community Discussion

No community discussion yet for this question.

Full FCSS_NST_SE-7.4 Practice