Question 12 - One Question A Week

Hi everyone,

It the 12th questions and this time, we will try the new format of choice question!

Question 12  August 1 - August 7

Next Question will come from the following document!
SANGFOR NGAF_v8.0.8_Application Control_Best Practice
You can download it

Update on August 8th

Question 12
Which of the following options is true about Web Application Protection?
This week we have tried a new form to set the event - poll. And 139 members have shared their answers. But what a pity is, the option 2 you all selected is not the right answer, and the right answer is option 3.

Here is a detailed explanation.
1.        Source zone is trust and untrust, destination zone is untrust
False: Source zone is untrust and destination zone is trust. Because the source zone must be the initiator of the TCP link.

2.        Web app protection only can protect the system basic on HTTP
False: Web app protection also can protect the FTP, MYSQL, TELNET, and SSH protocol.

3.        Need to confirm the policy enable protect HTTP on other port
True: Many web systems do not use port 80. We must confirm the policy enables the “Also protect HTTP access on other ports”. NGAF can identify and protect HTTP access on all ports

4.        Web Application can not block Website Scan.
False: Web Application can block Website Scan
