NSE4 · Question #12
Which web filtering inspection mode inspects DNS traffic?
The correct answer is A. DNS-based. DNS-based web filtering is specifically designed to inspect DNS traffic to block access to malicious or unwanted domains before the actual HTTP/HTTPS connection is established.
Question
Which web filtering inspection mode inspects DNS traffic?
Options
- ADNS-based.
- BFQDN-based.
- CFlow-based.
- DURL-based.
How the community answered
(13 responses)- A92% (12)
- B8% (1)
Why each option
DNS-based web filtering is specifically designed to inspect DNS traffic to block access to malicious or unwanted domains before the actual HTTP/HTTPS connection is established.
DNS-based web filtering operates by monitoring and filtering DNS queries and responses, preventing clients from resolving IP addresses for forbidden domains. This mode does not inspect the full HTTP/HTTPS traffic but rather acts at the DNS resolution stage.
FQDN-based is a type of object or criteria used in policies, not a web filtering inspection mode.
Flow-based web filtering inspects application layer traffic (like HTTP/HTTPS) but is not primarily focused on inspecting raw DNS queries for filtering purposes.
URL-based describes the criteria for filtering within proxy or flow modes, not a distinct inspection mode that targets DNS traffic.
Concept tested: FortiGate DNS-based web filtering
Source: https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/522100/web-filtering-inspection-modes
Topics
Community Discussion
No community discussion yet for this question.