NSE4 · Question #421
Which of the following network protocols can be inspected by the Data Leak Prevention scanning? (Choose three.)
The correct answer is A. SMTP B. HTTP-POST D. MAPI. FortiGate's Data Leak Prevention (DLP) is capable of inspecting common application layer protocols involved in data transfer, such as email and web traffic.
Question
Which of the following network protocols can be inspected by the Data Leak Prevention scanning? (Choose three.)
Options
- ASMTP
- BHTTP-POST
- CAIM
- DMAPI
- EICQ
How the community answered
(47 responses)- A89% (42)
- C6% (3)
- E4% (2)
Why each option
FortiGate's Data Leak Prevention (DLP) is capable of inspecting common application layer protocols involved in data transfer, such as email and web traffic.
SMTP (Simple Mail Transfer Protocol) is a critical protocol for email communication, which DLP inspects to prevent sensitive data from leaving the network via email.
HTTP-POST is used for submitting data via web forms, and DLP can inspect these submissions to detect and prevent exfiltration of sensitive information.
AIM (AOL Instant Messenger) is an older instant messaging protocol that is not typically listed as a primary protocol for broad DLP inspection compared to more prevalent business communication methods.
MAPI (Messaging Application Programming Interface) is primarily used by Microsoft Outlook and Exchange for email, and DLP can inspect MAPI traffic for sensitive data in enterprise environments.
ICQ is another legacy instant messaging protocol, and while some security solutions might inspect IM, it's not a core protocol typically highlighted for general DLP scanning on modern firewalls.
Concept tested: FortiGate DLP Supported Protocols
Source: https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/523490/protocols-and-direction
Topics
Community Discussion
No community discussion yet for this question.