nerdexam
Fortinet

FCSS_SASE_AD-23 · Question #41

Refer to the exhibit. Based on the configuration shown, in which two ways will FortiSASE process sessions that require FortiSandbox inspection? (Choose two.)

The correct answer is B. All infected files that FortiSandbox detects as malicious will be quarantined. C. All files detected on a USB drive will be sent to FortiSandbox for analysis. Under Remediation Actions, it is configured to Quarantine files with a Low or higher verdict from FortiSandbox, meaning malicious files will be quarantined. The toggle All Files Executed from Removable Media is enabled, meaning USB (removable media) files will be submitted to…

Advanced Security Policies

Question

Refer to the exhibit. Based on the configuration shown, in which two ways will FortiSASE process sessions that require FortiSandbox inspection? (Choose two.)

Exhibit

FCSS_SASE_AD-23 question #41 exhibit

Options

  • AAll infected files will be sent to a on-premises FortiSandbox for inspection.
  • BAll infected files that FortiSandbox detects as malicious will be quarantined.
  • CAll files detected on a USB drive will be sent to FortiSandbox for analysis.
  • DOnly endpoints assigned with profile for Sandbox Detection will be processed by the sandbox

How the community answered

(24 responses)
  • A
    8% (2)
  • B
    71% (17)
  • D
    21% (5)

Explanation

Under Remediation Actions, it is configured to Quarantine files with a Low or higher verdict from FortiSandbox, meaning malicious files will be quarantined. The toggle All Files Executed from Removable Media is enabled, meaning USB (removable media) files will be submitted to FortiSandbox for inspection.

Topics

#FortiSandbox#malware inspection#file quarantine#USB scanning

Community Discussion

No community discussion yet for this question.

Full FCSS_SASE_AD-23 Practice