nerdexam
Fortinet

FCSS_NST_SE-7.6 · Question #95

Refer to the exhibit, which displays the output of a real-time debug. Which statement accurately describes this output?

The correct answer is B. The server hostname was extracted either from the common name (CN) in the server certificate. The hostname="training.fortinet.com" field only appears when FortiGate learns the HTTPS hostname via SNI (in the TLS Client Hello) or by parsing the server certificate's CN-it isn't gleaned from any HTTP headers over an encrypted tunnel.

Troubleshoot Proxy and Flow-based Inspection Issues

Question

Refer to the exhibit, which displays the output of a real-time debug. Which statement accurately describes this output?

Exhibit

FCSS_NST_SE-7.6 question #95 exhibit

Options

  • AAccess to the requested website was allowed by web filter profile ftgd-allow.
  • BThe server hostname was extracted either from the common name (CN) in the server certificate
  • CThe URL requested was detected to belong to FortiGuard category ID 255.
  • DThe urlfilter debug detected a category mismatch.

How the community answered

(25 responses)
  • A
    12% (3)
  • B
    64% (16)
  • C
    20% (5)
  • D
    4% (1)

Explanation

The hostname="training.fortinet.com" field only appears when FortiGate learns the HTTPS hostname via SNI (in the TLS Client Hello) or by parsing the server certificate's CN-it isn't gleaned from any HTTP headers over an encrypted tunnel.

Topics

#web filter#HTTPS inspection#server certificate CN#FortiGuard category

Community Discussion

No community discussion yet for this question.

Full FCSS_NST_SE-7.6 Practice