PCNSA · Question #148
Assume a custom URL Category Object of "NO-FILES" has been created to identify a specific website? How can file uploading/downloading be restricted for the website while permitting general browsing…
The correct answer is B. Create a Security policy that references NO-FILES as a URL Category qualifier with an. To allow general browsing (HTTP/HTTPS) while blocking file transfers to a specific site, you reference the custom URL Category 'NO-FILES' directly as a match condition in a Security policy rule and attach a File Blocking profile to that rule. This allows the session to be…
Question
Assume a custom URL Category Object of "NO-FILES" has been created to identify a specific website? How can file uploading/downloading be restricted for the website while permitting general browsing access to that website?
Options
- ACreate a Security policy with a URL Filtering profile that references the site access setting of
- BCreate a Security policy that references NO-FILES as a URL Category qualifier with an
- CCreate a Security policy with a URL Filtering profile that references the site access setting of
- DCreate a Security policy that references NO-FILES as a URL Category qualifier with an
How the community answered
(42 responses)- A5% (2)
- B81% (34)
- C2% (1)
- D12% (5)
Explanation
To allow general browsing (HTTP/HTTPS) while blocking file transfers to a specific site, you reference the custom URL Category 'NO-FILES' directly as a match condition in a Security policy rule and attach a File Blocking profile to that rule. This allows the session to be permitted (general browsing continues) while the File Blocking profile enforces upload/download restrictions. Using the URL Filtering profile's 'site access' setting (choices A and C) would block all access to the site, not just file transfers - that approach cannot selectively permit browsing while denying file activity.
Topics
Community Discussion
No community discussion yet for this question.