View all questions & answers for the FCSS - Enterprise Firewall 7.4 Administrator Exam Materials exam


Question 44 Discussion

Refer to the exhibits. The exhibits show a network topology, a firewall policy, and an SSL/SSH inspection profile configuration. Why is FortiGate unable to detect HTTPS attacks on firewall policy ID 3 targeting the Linux server? (Choose one answer)

  • A. The administrator must set the policy to inspection mode to analyze the HTTPS packets as expected.
  • B. The administrator must enable HTTPS in the protocol port mapping of the deep- inspection SSL/SSH inspection profile.
  • C. The administrator must enable SSL inspection of the SSL server and upload the certificate of the Linux server website to the SSL/SSH inspection profile.
  • D. The administrator must enable cipher suites in the SSL/SSH inspection profile to decrypt the message.
Correct Answer: C

Brave-Dump Clients Votes

C 100%

Comments



Brave-Dumps Admin 2025-04-28 15:04:38

Selected Answers: C


Inbound SSL/TLS inspection for internal web servers cannot function without importing the server’s certificate and private key into the FortiGate device and enabling Protecting SSL Server mode inside the SSL/SSH Inspection profile.