exam questions

Exam FCSS_NST_SE-7.4 All Questions

View all questions & answers for the FCSS_NST_SE-7.4 exam

Exam FCSS_NST_SE-7.4 topic 1 question 46 discussion

Actual exam question from Fortinet's FCSS_NST_SE-7.4
Question #: 46
Topic #: 1
[All FCSS_NST_SE-7.4 Questions]

Refer to the exhibit, which shows a session table entry.

Which statement about FortiGate behavior relating to this session is correct?

  • A. FortiGate redirected the client to the captive portal to authenticate, so that a correct policy match could be made.
  • B. FortiGate forwarded this session without any inspection.
  • C. FortiGate is performing a security profile inspection using the CPU.
  • D. FortiGate applied only IPS inspection to this session.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
IBB90704
2 months, 1 week ago
Selected Answer: C
Pagina 85 Network_Security_Support_Engineer_7.4_Study_Guide: proto_state=11 The protocol state in the session table is a two-digit number. For TCP, the first number (from left to right) is related to the server-side state and is 0 when the session is not subject to any inspection (flow or proxy). If flow or proxy inspection is done, then the first digit is different from 0. The second digit is the client-side state Pagina 242 y 243 Enterprise_Firewall_7.2_Study: The flag redir means the traffic is inspected in proxy-based mode. Enabling the security profiles on the FortiGate impacts on firewall resources and throughput. Packets are sent to the kernel or main CPU to enforce filtering. FortiOS supports flow-based and proxy-based inspection in firewall policies and security profiles.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...