exam questions

Exam NSE4_FGT-7.2 All Questions

View all questions & answers for the NSE4_FGT-7.2 exam

Exam NSE4_FGT-7.2 topic 1 question 37 discussion

Actual exam question from Fortinet's NSE4_FGT-7.2
Question #: 37
Topic #: 1
[All NSE4_FGT-7.2 Questions]

Which two statements explain antivirus scanning modes? (Choose two.)

  • A. In flow-based inspection mode, files bigger than the buffer size are scanned.
  • B. In proxy-based inspection mode, files bigger than the buffer size are scanned.
  • C. In flow-based inspection mode, FortiGate buffers the file, but also simultaneously transmits it to the client.
  • D. In proxy-based inspection mode, antivirus scanning buffers the whole file for scanning, before sending it to the client.
Show Suggested Answer Hide Answer
Suggested Answer: CD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
GeniusA
1 year, 4 months ago
CD are correct.
upvoted 1 times
...
Slash_JM
1 year, 7 months ago
Selected Answer: CD
FortiGate Security 7.2 Study Guide p.350, 352
upvoted 1 times
...
raydel92
1 year, 8 months ago
Selected Answer: CD
Correct: C. In flow-based inspection mode, FortiGate buffers the file, but also simultaneously transmits it to the client. D. In proxy-based inspection mode, antivirus scanning buffers the whole file for scanning, before sending it to the client. FortiGate Security 7.2 Study Guide (p.350 & 352): "In flow-based inspection mode, the IPS engine reads the payload of each packet, caches a local copy, and forwards the packet to the receiver at the same time. Because the file is ransmitted simultaneously, flow-based mode consumes more CPU cycles than proxy-based." "Each protocol’s proxy picks up a connection and buffers the entire file first (or waits until the oversize limit is reached) before scanning. The client must wait for the scanning to finish." Reference and download study guide: https://ebin.pub/fortinet-fortigate-security-study-guide-for-fortios-72.html
upvoted 4 times
...
D1360_1304
1 year, 9 months ago
CD are correct. A and B are false in both cases.
upvoted 1 times
...
Brandon534
1 year, 10 months ago
Selected Answer: CD
page 350 and 352
upvoted 2 times
...
erawemk
1 year, 10 months ago
Selected Answer: CD
NSE4 FortiGate Security 7.2, pages 350 and 352
upvoted 2 times
...
Eggrolls
1 year, 10 months ago
Selected Answer: CD
C and D correct answer
upvoted 1 times
...
emacip23
2 years ago
Selected Answer: CD
CD correct
upvoted 1 times
...
lrnt
2 years, 1 month ago
C and D - Regardless of inspection mode, files bigger than buffer size are not scanned (Logging can be enabled)
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago