What is the reason for the failed virus detection by FortiGate?

A network administrator has enabled SSL certificate inspection and antivirus on FortiGate. When downloading an EICAR test file through HTTP, FortiGate detects the virus and blocks the file. When downloading the same file through HTTPS, FortiGate does not detect the virus and the file can be downloaded.

What is the reason for the failed virus detection by FortiGate?
A . The website is exempted from SSL inspection.
B. The EICAR test file exceeds the protocol options oversize limit.
C. The selected SSL inspection profile has certificate inspection enabled.
D. The browser does not trust the FortiGate self-signed CA certificate.

Answer: A,D

Explanation:

https traffic requires SSL decryption. Check the ssh inspection profile

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments