Fortinet
NSE4_FGT-6.4 · Question #6
Refer to the exhibits to view the firewall policy (Exhibit A) and the antivirus profile (Exhibit B). Exhibit A Exhibit B Which statement is correct if a user is unable to receive a block replacement…
The correct answer is B. The flow-based inspection is used, which resets the last packet to the user. As we can see in the last slide, in flow-based inspection if a virus is detected after a few packets the block page is not displayed.
Security Profiles
Question
Refer to the exhibits to view the firewall policy (Exhibit A) and the antivirus profile (Exhibit B). Exhibit A Exhibit B Which statement is correct if a user is unable to receive a block replacement message when downloading an infected file for the first time?
Exhibits
Options
- AThe firewall policy performs the full content inspection on the file.
- BThe flow-based inspection is used, which resets the last packet to the user.
- CThe volume of traffic being inspected is too high for this model of FortiGate.
- DThe intrusion prevention security profile needs to be enabled when using flow-based inspection
How the community answered
(17 responses)- A6% (1)
- B71% (12)
- C6% (1)
- D18% (3)
Explanation
As we can see in the last slide, in flow-based inspection if a virus is detected after a few packets the block page is not displayed.
Topics
#flow-based inspection#antivirus profile#replacement message#content inspection
Community Discussion
No community discussion yet for this question.

