nerdexam
Fortinet

FCSS_NST_SE-7.6 · Question #49

Refer to the exhibit, which shows a partial web filter profile configuration.

The correct answer is B. Based on the URL Filter configuration, FortiGate allows the connection. FortiGate will allow the user's request, because static URL‑filter entries take priority over the FortiGuard category block. The *dropbox.com wildcard allow rule in the URL Filter overrides the "File Sharing and Storage" block.

Troubleshoot Proxy and Flow-based Inspection Issues

Question

Refer to the exhibit, which shows a partial web filter profile configuration.

Exhibit

FCSS_NST_SE-7.6 question #49 exhibit

Options

  • AFortiGate blocks the connection as an invalid URL.
  • BBased on the URL Filter configuration, FortiGate allows the connection.
  • CFortiGate blocks the connection, based on the FortiGuard category-based filter configuration.

How the community answered

(46 responses)
  • A
    13% (6)
  • B
    80% (37)
  • C
    7% (3)

Explanation

FortiGate will allow the user's request, because static URL‑filter entries take priority over the FortiGuard category block. The *dropbox.com wildcard allow rule in the URL Filter overrides the "File Sharing and Storage" block.

Topics

#web filter#URL filter#FortiGuard category#traffic inspection

Community Discussion

No community discussion yet for this question.

Full FCSS_NST_SE-7.6 Practice