FCP – FortiGate Administrator 7.4 — Question 15
Which inspection mode does FortiGate use for application profiles if it is configured as a profile-based next-generation firewall (NGFW)?
Answer options
- A. Full content inspection
- B. Proxy-based inspection
- C. Certificate inspection
- D. Flow-based inspection
Correct answer: D
Explanation
The correct answer is D, Flow-based inspection, which allows FortiGate to analyze traffic flow without fully inspecting the content, making it efficient for high-performance environments. Options A and B refer to different methods of handling traffic, which are not applicable in this context, while C, Certificate inspection, is specific to managing SSL/TLS certificates and not relevant to application profile inspection.