WorksheetsFortiGate Security Quiz
Total questions: 7
Worksheet time: 4mins
Which method allows management access to the FortiGate CLI without network connectivity?
CLI console widget
Serial console
SSH console
Telnet console
The IPS engine is used by which three security features? (Choose three.)
DNS filter
Application control
Web filter in flow-based inspection
Web application firewall
Antivirus in flow-based inspection
What are two benefits of flow-based inspection compared to proxy-based inspection? (Choose two.)
FortiGate allocates two sessions per connection
FortiGate uses fewer resources
FortiGate performs a more exhaustive inspection on traffic
FortiGate adds less latency to traffic.
Which inspection mode does FortiGate use if it is configured as a policy-based next-generation firewall (NGFW)?
Full content inspection
Certificate inspection
Flow-based inspection
Proxy-based inspection
Which two statements about antivirus scanning mode are true? (Choose two.)
In proxy-based inspection mode, files bigger than the buffer size are scanned.
In flow-based inspection mode, FortiGate buffers the file, but also simultaneously transmits it to the client.
In proxy-based inspection mode, antivirus scanning buffers the whole file for scanning, before sending it to the client.
In flow-based inspection mode, files bigger than the buffer size are scanned.
Which two inspection modes can you use to configure a firewall policy on a profile-based next-generation firewall (NGFW)? (Choose two.)
Proxy-based inspection
Certificate inspection
Flow-based inspection
Full Content inspection
FortiGate is configured as a policy-based next-generation firewall (NGFW) and is applying web filtering and application control directly on the security policy. Which two other security profiles can you apply to the security policy? (Choose two.)
Antivirus scanning
File filter
DNS filter
Intrusion prevention
