Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet Exam FCSS_SASE_AD-23 Topic 3 Question 8 Discussion

Actual exam question for Fortinet's FCSS_SASE_AD-23 exam
Question #: 8
Topic #: 3
[All FCSS_SASE_AD-23 Questions]

An organization wants to block all video and audio application traffic but grant access to videos from CNN Which application override action must you configure in the Application Control with Inline-CASB?

Show Suggested Answer Hide Answer
Suggested Answer: D

To block all video and audio application traffic while granting access to videos from CNN, you need to configure an application override action in the Application Control with Inline-CASB. Here is the step-by-step detailed explanation:

Application Control Configuration:

Application Control is used to identify and manage application traffic based on predefined or custom application signatures.

Inline-CASB (Cloud Access Security Broker) extends these capabilities by allowing more granular control over cloud applications.

Blocking Video and Audio Applications:

To block all video and audio application traffic, you can create a policy within Application Control to deny all categories related to video and audio streaming.

Granting Access to Specific Videos (CNN):

To allow access to videos from CNN specifically, you must create an override rule within the same Application Control profile.

The override action 'Exempt' ensures that traffic to specified URLs (such as those from CNN) is not subjected to the blocking rules set for other video and audio traffic.

Configuration Steps:

Navigate to the Application Control profile in the FortiSASE interface.

Set the application categories related to video and audio streaming to 'Block.'

Add a new override entry for CNN video traffic and set the action to 'Exempt.'


FortiOS 7.2 Administration Guide: Detailed steps on configuring Application Control and Inline-CASB.

Fortinet Training Institute: Provides scenarios and examples of using Application Control with Inline-CASB for specific use cases.

Contribute your Thoughts:

Elmer
7 days ago
D. Exempt, without a doubt. I bet the exam writer is a CNN junkie, hence the special treatment for their videos.
upvoted 0 times
...
Shawna
15 days ago
I see your point, Jesus. I think D) Exempt is the correct answer because it allows us to make an exception for CNN videos while blocking all other video and audio applications.
upvoted 0 times
...
Lynelle
15 days ago
I'll go with D. Exempt. It's the only one that aligns with the requirement to grant access to CNN videos.
upvoted 0 times
...
Jesus
16 days ago
But if we want to specifically grant access to videos from CNN, wouldn't it make more sense to use D) Exempt?
upvoted 0 times
...
Nadine
21 days ago
D. Exempt is the way to go. I just hope the exam doesn't start asking me to configure the latest TikTok trends next.
upvoted 0 times
Kanisha
7 days ago
A) Allow
upvoted 0 times
...
...
Tambra
28 days ago
I disagree, I believe the answer is A) Allow.
upvoted 0 times
...
Kandis
1 months ago
Definitely D. Exempt, it's the only option that makes sense here. I wonder if the exam writer watches too much TV, though.
upvoted 0 times
Shawn
10 days ago
C) Permit
upvoted 0 times
...
Marlon
13 days ago
B) Pass
upvoted 0 times
...
Brock
18 days ago
A) Allow
upvoted 0 times
...
...
Kara
1 months ago
I think the answer is D. Exempt, since we need to grant access to CNN videos while blocking all other video and audio app traffic.
upvoted 0 times
Tyisha
22 days ago
Yes, you're correct. We should configure the Application Control with Inline-CASB to exempt CNN videos while blocking all other video and audio applications.
upvoted 0 times
...
Wilda
26 days ago
I think the answer is D. Exempt, since we need to grant access to CNN videos while blocking all other video and audio app traffic.
upvoted 0 times
...
...
Jesus
2 months ago
I think the answer is D) Exempt.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77