Which of the following is default inspection mode in FortiOS 5.6?
Respuesta
a. Proxy-based
b. Flow-based with NGFW mode set to profile- based
Pregunta 2
Pregunta
How does NGFW policy-based mode differ from profile-based mode?
Respuesta
a. Policy-based flow inspection supports web profile overrides.
b. Policy-based flow inspection defines URL filters directly under the firewall policy.
Pregunta 3
Pregunta
Which of the following statements about proxy-based web filtering is true?
Respuesta
a. Requires more resources than flow-based
b. Transparently analyzes the TCP flow of the traffic
Pregunta 4
Pregunta
Inspection modes
Respuesta
Flow based
Proxy
Policy based
Route based
Pregunta 5
Pregunta
NGFW mode
Respuesta
Proxy
Flow-based
Profile-based
Policy-based
Pregunta 6
Pregunta
NGFW mode only applicable to Proxy inspection mode
Respuesta
True
False
Pregunta 7
Pregunta
Default inspection mode in FortiOS 5.6
Respuesta
Flow-based
Profile-based
Proxy
Policy-based
Pregunta 8
Pregunta
Requires administrators to create and configure application control and web filtering profiles. then apply them to the selected firewall policy.
Respuesta
Profile-based
Policy-based
Pregunta 9
Pregunta
Allows administrators to apply application control and web filtering directly to a firewall policy, without having to configure application control and web filtering profiles.
Requires administrators to apply a single SSL/SSH inspection profile to all firewall policies.
Respuesta
Profile-based
Policy-based
Pregunta 10
Pregunta
Antivirus configuration is always profile-based, regardless of the NGFW mode selection
Default inspection mode in FortiOS 5.6
Uses single-pass direct filter approach (DFA) pattern matching to identify possible attacks or threats
File is scanned on a flow basis as it passes through FortiGate
Requires fewer processing resources
Faster scanning
More thorough inspection
Adds latency
-Complete content is scanned
Two TCP connections
- From client to FortiGate acting as proxy server
-From FortiGate to server
Communication is terminated on Layer 4
More resource intensive
Provides a higher level of threat protection
Respuesta
Flow-based
Proxy-based
Pregunta 15
Pregunta
Which of the following is default inspection mode in FortiOS 5.6?
Respuesta
A. Proxy-based.
B. Flow-based with NGFW mode set to profile-based.
Pregunta 16
Pregunta
How does NGFW policy-based mode differ from profile-based mode?
Respuesta
A. Policy-based flow inspection supports web profile overrides.
B. Policy-based flow inspection defines URL filters directly under the firewall policy.
Pregunta 17
Pregunta
Which of the following statements about proxy-based web filtering is true?
Respuesta
A. Requires more resources than flow-based
B. Transparently analyzes the TCP flow of the traffic