exam questions

Exam FCP_FGT_AD-7.4 All Questions

View all questions & answers for the FCP_FGT_AD-7.4 exam

Exam FCP_FGT_AD-7.4 topic 1 question 76 discussion

Actual exam question from Fortinet's FCP_FGT_AD-7.4
Question #: 76
Topic #: 1
[All FCP_FGT_AD-7.4 Questions]

A network administrator enabled antivirus and selected an SSL inspection profile on a firewall policy.

When downloading an EICAR test file through HTTP, FortiGate detects the virus and blocks the file. When downloading the same file through HTTPS, FortiGate does not detect the and does not block the file allowing it to be downloaded.

The administrator confirms that the traffic matches the configured firewall policy.

What are two reasons for the failed virus detection by FortiGate? (Choose two.)

  • A. The selected SSL inspection profile has certificate inspection enabled
  • B. The browser does not trust the FortiGate self-signed CA certificate
  • C. The EICAR test file exceeds the protocol options oversize limit
  • D. The website is exempted from SSL inspection
Show Suggested Answer Hide Answer
Suggested Answer: AD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
x666
5 months, 1 week ago
Selected Answer: AD
That certificate inspection is *enabled* throw me out a bit.. Because I though that deep-inspection also inspects the certificate. But after checking the GUI, the for options Inspection Method are: SSL Certificate Inspection | Full SLL Inspection.
upvoted 1 times
...
sxcap
5 months, 1 week ago
Selected Answer: AD
need deep inspection to work over https
upvoted 1 times
...
vuhidus
6 months, 1 week ago
Selected Answer: AD
A&D correct
upvoted 1 times
...
s4mu3l007
7 months ago
A&D answer
upvoted 1 times
...
CharlieS8
7 months ago
AD correct
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...