nse7_efw-70 Exam QuestionsBrowse all questions from this exam

nse7_efw-70 Exam - Question 21


Refer to the exhibit, which shows a FortiGate configuration.

An administrator is troubleshooting a web filter issue on FortiGate. The administrator has configured a web filter profile and applied it to a policy; however, the web filter is not inspecting any traffic that is passing through the policy.

What must the administrator do to fix the issue?

Show Answer
Correct Answer: D

The web filter is not inspecting any traffic because the 'webfilter-force-off' setting is currently enabled. This setting essentially disables the FortiGuard web filtering service. To ensure the web filter inspects the traffic, the administrator should set 'webfilter-force-off' to disable. This change will enable the FortiGuard web filtering service, allowing it to inspect traffic as intended.

Discussion

7 comments
Sign in to comment
Seph1Option: D
Feb 10, 2023

D - is correct

JerebanOption: D
Mar 2, 2023

D- is correct

BoostBorisOption: D
Mar 26, 2023

set webfilter-force-off enable = Turn off the FortiGuard web filtering service.

[Removed]Option: D
May 12, 2023

Enterprise_Firewall_7.0_Study_Guide-Online.pdf p 367

akukaraciaOption: D
Feb 20, 2023

D - OK C - wrong. There are 3 methods, anycast is one of them. Read Technical Tip: FortiGuard is not reachable via Anycast default method

certifi46Option: D
May 10, 2023

set webfilter-force-off disable = WF enabled

J_OlinOption: D
May 7, 2024

With the webfilter-force-off flag set to 'enable' it is telling the FortiGate not to use FortiGuard web filtering. You've enabled turning it off.