Marcos Avila
Quiz by , created more than 1 year ago

NSE4 6.0 NSE4 6.0 Quiz on Antivirus III, created by Marcos Avila on 12/09/2018.

32
1
0
Marcos Avila
Created by Marcos Avila almost 6 years ago
Close

Antivirus III

Question 1 of 8

1

Archives are unpacked and files and archives within are scanned separately.
Decompressed files have a separate oversize limit.
Limit can be configured for each protocol separately.

Select one of the following:

  • compressed archives are supported (default is 12 layers) maximum 100 usually.

  • compressed archives are supported (default is 21 layers) maximum 1000 usually.

  • compressed archives are supported (default is 100 layers) maximun 1000 usually.

Explanation

Question 2 of 8

1

What is the default scanning behavior for files over 10MB?

Select one of the following:

  • A. Allow the file without scanning.

  • B. Block all large files that exceed the buffer threshold.

Explanation

Question 3 of 8

1

How do you enable botnet protection?

Select one of the following:

  • A. Enable botnet scans under FortiSandbox configuration.

  • B. Enable botnet scans on external (WAN) facing interfaces.

Explanation

Question 4 of 8

1

FortiGate models that feature NTurbo (NP4 or NPS) can accelerate antivirus processing to enhance performance.
SoC3 models also support NTurbo

Select one of the following:

  • Config ips global
    set np-accel-mode {none | basic } (Enable NTurbo acceleration

  • Config av global
    set np-accel-mode {none | basic } (Enable NTurbo acceleration

Explanation

Question 5 of 8

1

Can you use NTurbo hardware acceleration for proxy-based inspection mode antivirus scans?

Select one of the following:

  • Yes

  • No

Explanation

Question 6 of 8

1

What does the logging of oversized files option do?

Select one of the following:

  • A. Enables logging of all files that cannot be scanned due to oversize limit.

  • B. Logs all files that are over 5MB.

Explanation

Question 7 of 8

1

Run the real-time update debug to isolate update-related issues.

Select one of the following:

  • # diagnose debug application update -1
    # diagnose debug enable
    # execute update-av

  • # diagnose debug av update -1
    # diagnose debug enable
    # execute update-application

Explanation

Question 8 of 8

1

What TCP port is used to contact to FortiGuard servers for antivirus updates?

Select one of the following:

  • A. 53

  • B. 443

Explanation