FCSS – Enterprise Firewall Administrator 7.4 — Question 52
What action can be taken on a FortiGate to block traffic using IPS protocol decoders, focusing on network transmission patterns and application signatures?
Answer options
- A. Use the DNS filter to block application signatures and protocol decoders.
- B. Use application control to limit non-URL-based software handling.
- C. Enable application detection-based SD-WAN rules.
- D. Configure a web filter profile in flow mode.
Correct answer: B
Explanation
Option B is correct because application control specifically allows for the management of traffic based on application signatures, which is essential for blocking unwanted traffic. The other options do not directly address the use of IPS protocol decoders or application signatures in the context needed for effective traffic blocking.