Fortinet
FCSS_NST_SE-7.6 · Question #49
Refer to the exhibit, which shows a partial web filter profile configuration.
The correct answer is B. Based on the URL Filter configuration, FortiGate allows the connection. FortiGate will allow the user's request, because static URL‑filter entries take priority over the FortiGuard category block. The *dropbox.com wildcard allow rule in the URL Filter overrides the "File Sharing and Storage" block.
Troubleshoot Proxy and Flow-based Inspection Issues
Question
Refer to the exhibit, which shows a partial web filter profile configuration.
Exhibit
Options
- AFortiGate blocks the connection as an invalid URL.
- BBased on the URL Filter configuration, FortiGate allows the connection.
- CFortiGate blocks the connection, based on the FortiGuard category-based filter configuration.
How the community answered
(46 responses)- A13% (6)
- B80% (37)
- C7% (3)
Explanation
FortiGate will allow the user's request, because static URL‑filter entries take priority over the FortiGuard category block. The *dropbox.com wildcard allow rule in the URL Filter overrides the "File Sharing and Storage" block.
Topics
#web filter#URL filter#FortiGuard category#traffic inspection
Community Discussion
No community discussion yet for this question.
