exam questions

Exam NSE4_FGT-7.0 All Questions

View all questions & answers for the NSE4_FGT-7.0 exam

Exam NSE4_FGT-7.0 topic 1 question 34 discussion

Actual exam question from Fortinet's NSE4_FGT-7.0
Question #: 34
Topic #: 1
[All NSE4_FGT-7.0 Questions]

Which three statements about a flow-based antivirus profile are correct? (Choose three.)

  • A. IPS engine handles the process as a standalone
  • B. Flow-based inspection uses a hybrid of scanning modes available in proxy-based inspection.
  • C. If the virus is detected, the last packet is delivered to the client.
  • D. Optimized performance compared to proxy-based inspection.
  • E. FortiGate buffers the whole file but transmits to the client simultaneously.
Show Suggested Answer Hide Answer
Suggested Answer: BDE 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
raydel92
4 months, 1 week ago
Selected Answer: BDE
Correct: B. Flow-based inspection uses a hybrid of scanning modes available in proxy-based inspection. D. Optimized performance compared to proxy-based inspection. E. FortiGate buffers the whole file but transmits to the client simultaneously. Incorrect: A. IPS engine handles the process as a standalone C. If the virus is detected, the last packet is delivered to the client. FortiGate Security 7.2 Study Guide (p.350): "Flow-based inspection mode uses a hybrid of the scanning modes available in proxy-based inspection" "If performance is your top priority, then flow inspection mode is more appropriate" "As you can see on this slide, the client sends a request and starts receiving packets immediately, but FortiGate also caches those packets at the same time." Reference and download study guide: https://ebin.pub/fortinet-fortigate-security-study-guide-for-fortios-72.html
upvoted 1 times
...
darkspawn117
1 year, 2 months ago
Isnt the last packet sent in Flow-based still, even though it is messed with? Wouldnt this make C correct as well?
upvoted 1 times
JT20
1 year, 2 months ago
Nope, C is not correct. "When a virus is detected on a TCP session where some packets have been already forwarded to the receiver, FortiGate resets the connection and does not send the last piece of the file. Although the receiver got most of the file content, the file has been truncated and therefore, can’t be opened."
upvoted 1 times
...
...
iseeusee
1 year, 2 months ago
Selected Answer: BDE
Fortigate Security 7.0 Study Guide Page 485
upvoted 1 times
...
johnpersil
1 year, 2 months ago
B,D,E --> Fortigate Security 7.0 Study Guide Page 480
upvoted 1 times
...
Subash_2022
1 year, 3 months ago
Selected Answer: BDE
Answer IS B,D,E
upvoted 2 times
...
Ernestokoro
1 year, 4 months ago
Ans is BDE
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago