Answer is 100% C. Tested on my Fortigate by setting Social Networking web filter category to Authenticate and applying that to a high priority policy with full SSL inspection enabled. First action listed in raw log for that IP was blocked, then authentication page popped up, entered credentials for user and then a log with action passthrough was generated.
a. if it were blocked it would not be allowed the second time.
b. this is not a policy.
c. CORRECT first time was incorrect password second time was correct password.
d. that is the name of the filter not the policy
Fortigate Security 7.0 PG 381
The answer to this one is C.
A is incorrect. The web filter category is not explicitly blocked since it is allowed the second time around.
B is incorrect. The policy is not what is interacting, the web filter profile is. The question even refers to the "web filter logs."
D is incorrect. The name of the web filter profile is "all_users_web" not the firewall policy.
B is correct: When you set the Warning action, you will see firstly the blocked and if you click on the web page to continue to the site you will see another passthrough.
There is no challenge log that shows the user was prompted for authentication.
D is incorrect as it is name of the security profile.
B is the most appropriate answer. Action-set warning is set for web category not for the firewall policy.
Have in mind that in A and C, it explicitaly talks about the action of the web filter category, not the firewall policy action. But in B it talks about the firewall policy action(if the idea was to talk about the web filter category action, then following the same logic, the sentence should be expressed more or less like A and C)
Here in the logs we have 2 different sessions, one was blocked by the firewall and the other was passed. Both hitting the same policy id. I think D is the most realistic answer
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
prenominal
Highly Voted 3 years, 8 months agoprenominal
3 years, 8 months agoNicolaeEast
Most Recent 2 years, 8 months agoSandroAlex
3 years, 1 month agohaymen
3 years, 3 months agoEhab99
3 years, 1 month agomrtim5700
3 years, 4 months agoforti_Ctes
3 years, 7 months agovagedis
3 years, 7 months agoenassim
3 years, 8 months agoRHK0783
3 years, 8 months ago2021gene
3 years, 8 months agoYASL
3 years, 8 months agomoneim
3 years, 8 months agoyadavarya97
3 years, 8 months agomoneim
3 years, 8 months agomoneim
3 years, 8 months agozqrni
3 years, 8 months ago