nerdexam
Fortinet

NSE4_FGT-6.4 · Question #6

Refer to the exhibits to view the firewall policy (Exhibit A) and the antivirus profile (Exhibit B). Exhibit A Exhibit B Which statement is correct if a user is unable to receive a block replacement…

The correct answer is B. The flow-based inspection is used, which resets the last packet to the user. As we can see in the last slide, in flow-based inspection if a virus is detected after a few packets the block page is not displayed.

Security Profiles

Question

Refer to the exhibits to view the firewall policy (Exhibit A) and the antivirus profile (Exhibit B). Exhibit A Exhibit B Which statement is correct if a user is unable to receive a block replacement message when downloading an infected file for the first time?

Exhibits

NSE4_FGT-6.4 question #6 exhibit 1
NSE4_FGT-6.4 question #6 exhibit 2

Options

  • AThe firewall policy performs the full content inspection on the file.
  • BThe flow-based inspection is used, which resets the last packet to the user.
  • CThe volume of traffic being inspected is too high for this model of FortiGate.
  • DThe intrusion prevention security profile needs to be enabled when using flow-based inspection

How the community answered

(17 responses)
  • A
    6% (1)
  • B
    71% (12)
  • C
    6% (1)
  • D
    18% (3)

Explanation

As we can see in the last slide, in flow-based inspection if a virus is detected after a few packets the block page is not displayed.

Topics

#flow-based inspection#antivirus profile#replacement message#content inspection

Community Discussion

No community discussion yet for this question.

Full NSE4_FGT-6.4 Practice