Refer to the exhibits, which show the firewall policy and an antivirus profile configuration.

Why is the user unable to receive a block replacement message when downloading an infected file for the first time?
Refer to the exhibits, which show the firewall policy and an antivirus profile configuration.
Why is the user unable to receive a block replacement message when downloading an infected file for the first time?
D is correct In Flow Based scanning, if a virus is detected, the final packet is dropped making the file unusable tot the end user. FG caches the URL of the file. If the user attempts to download again, rather than scanning the file again, the IPS engine then sends a block message to the user.
Correct Answer: D. Flow-based inspection is used, which resets the last packet to the user. Reference: FCP - FortiGate 7.4 Administrator Self-Paced Guide, page 200.
Page 200
¿D? are correct
D. Flow-based inspection is used, which resets the last packet to the user.
D. Flow-based inspection is used, which resets the last packet to the user