PCNSA · Question #172
You receive notification about new malware that infects hosts through malicious files transferred by FTP. Which Security profile detects and protects your internal networks from this threat after…
The correct answer is C. Antivirus profile applied to inbound Security policy rules. An Antivirus Security profile (C) scans file content in supported protocols - including FTP - against antivirus/malware signatures. Since the infected files originate externally and flow inward to internal hosts, the profile must be applied to inbound Security policy rules. URL…
Question
You receive notification about new malware that infects hosts through malicious files transferred by FTP. Which Security profile detects and protects your internal networks from this threat after you update your firewall's threat signature database?
Options
- AURL Filtering profile applied to inbound Security policy rules.
- BData Filtering profile applied to outbound Security policy rules.
- CAntivirus profile applied to inbound Security policy rules.
- DVulnerability Protection profile applied to outbound Security policy rules.
How the community answered
(23 responses)- A4% (1)
- C87% (20)
- D9% (2)
Explanation
An Antivirus Security profile (C) scans file content in supported protocols - including FTP - against antivirus/malware signatures. Since the infected files originate externally and flow inward to internal hosts, the profile must be applied to inbound Security policy rules. URL Filtering (A) only applies to HTTP/HTTPS web traffic, not FTP. Data Filtering (B) is used to detect and block outbound data exfiltration, not inbound malware. Vulnerability Protection (D) guards against network-based exploits targeting software vulnerabilities, not file-borne malware delivered over FTP.
Topics
Community Discussion
No community discussion yet for this question.