QuestionQ46

System Configuration

You are configuring an integration between FortiWeb and FortiSandbox.

On FortiWeb, in which section must you define the settings used to submit files to FortiSandbox?

  • A Web anti-defacement
  • B File security
  • C Antivirus
  • D Attack signature
Explanation

FortiWeb submits files to FortiSandbox based on rules and policies defined under File Security (Web Protection > Input Validation > File Security). Administrators configure file security rules that specify which uploaded files (by type, size, etc.) are subject to inspection, and FortiWeb packages matching files in TAR format and forwards them to FortiSandbox for sandboxing analysis. FortiSandbox then returns a verdict, and FortiWeb takes the action defined in the corresponding file security policy (such as generating an attack log or blocking the request) if the file is found malicious. This workflow is documented in Fortinet's 'Limiting file uploads' section of the FortiWeb Administration Guide, distinguishing it from Web Anti-Defacement (website content integrity monitoring), Antivirus (built-in signature-based scanning), and Attack Signature (detection of known web attack patterns).

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!