nse7_efw-72 Exam QuestionsBrowse all questions from this exam

nse7_efw-72 Exam - Question 35


Refer to the exhibit, which shows an error in system fortiguard configuration.

What is the reason you cannot set the protocol to udp in config system fortiguard?

Show Answer
Correct Answer: B

You cannot set the protocol to UDP in the config system fortiguard because fortiguard-anycast is set to enable. This setting, when enabled, restricts the protocol options and causes the system to default to using HTTPS on port 443 for web filtering, which prevents the use of UDP.

Discussion

8 comments
Sign in to comment
ArtbrutOption: B
Feb 29, 2024

As per https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-use-UDP-protocol-for-FortiGuard-web-filter/ta-p/191920

Heim_OxOption: B
Feb 29, 2024

B is correct. fortguard-anycast must be disabled to change the protocol to UDP. in this case, error is received when trying to set UDP protocol. This can indicate fortiguard-anycast is currently enabled.

havokduOption: B
May 26, 2024

B is correct. You can enable UDP and ports 443, 53 or 8888 only after disabling fortiguard anycast setting on CLI. Otherwise Web-filtering will use HTTPS on port 443.

mollyk70Option: A
Feb 26, 2024

A is correct

MikeSco001
Feb 29, 2024

answer is B

MikeSco001Option: B
Feb 29, 2024

B is correct

5deee77Option: B
Mar 4, 2024

study guide page 245

charrucoOption: B
Apr 24, 2024

B is correct study guide page 245

jddc10006Option: B
Jul 11, 2024

B its correct