📝 Section Review: Security Profiles

اہم نکاتKey TakeawaysKey Takeaways

خود جانچ (مشق)Self-Check (Practice)Self-Check (Practice)

یہ مشقی سوالات ہیں، امتحانی سوالات نہیں۔These are practice questions, not exam questions.These are practice questions, not exam questions.

❓ فلو بیسڈ بمقابلہ پراکسی بیسڈ انسپیکشن — ہر ایک کب بہتر ہے؟Flow-based vs proxy-based inspection — har aik kab behtar hai?Flow-based vs proxy-based inspection — when does each win?

فلو موڈ پیکٹس کو بفر کیے بغیر اِن لائن اسکین کرتا ہے — تیز؛ پراکسی موڈ پورا کنٹینٹ ری کنسٹرکٹ کرتا ہے — گہرا انسپیکشن، زیادہ CPU، اور کچھ فیچرز کو لازمی چاہیے۔Flow mode packets ko buffer kiye baghair inline scan karta hai — tez; proxy mode poora content reconstruct karta hai — gehra inspection, zyada CPU, aur kuch features ko lazmi chahiye.Flow mode scans packets inline without buffering — fast; proxy mode reconstructs full content — deeper inspection, more CPU, and required by some features.

❓ IPS اور ایپلی کیشن کنٹرول میں کیا فرق ہے؟IPS aur application control mein kya farq hai?What is the difference between IPS and application control?

IPS مشہور حملہ سگنیچرز بلاک کرتا ہے؛ ایپلی کیشن کنٹرول سوشل میڈیا یا فائل شیئرنگ جیسی ایپلی کیشنز کی پہچان کر کے انہیں کنٹرول کرتا ہے۔IPS mashhoor hamla signatures block karta hai; application control social media ya file sharing jaisi applications ki pehchan kar ke unhen control karta hai.IPS blocks known attack signatures; application control identifies and controls applications like social media or file sharing.

❓ FortiSandbox زیرو ڈے مال ویئر کیسے پکڑتا ہے؟FortiSandbox zero-day malware kaise pakarta hai?How does FortiSandbox catch zero-day malware?

یہ نامعلوم فائلز کو الگ VM میں چلا کر رویہ جج کرتا ہے — بغیر سگنیچر والا زیرو ڈے مال ویئر پکڑتا ہے؛ ورڈکٹس پوری سیکیورٹی فیبرک میں شیئر ہوتے ہیں۔Yeh namaloom files ko alag VM mein chala kar rawaiya judge karta hai — bina signature wala zero-day malware pakarta hai; verdicts poori Security Fabric mein share hote hain.It detonates unknown files in an isolated VM and judges behavior — catching zero-day malware with no signature; verdicts are shared across the Security Fabric.

❓ ZTNA بمقابلہ SASE — ہر ایک کیا ہے؟ZTNA vs SASE — har aik kya hai?ZTNA vs SASE — what is each one?

ZTNA آئیڈینٹیٹی اور ڈیوائس چیکس کے بعد per-application رسائی دیتا ہے؛ SASE نیٹ ورک اور سیکیورٹی (SWG، CASB، ZTNA، فائر وال) کو کلاؤڈ سروس میں جوڑ دیتا ہے۔ZTNA identity aur device checks ke baad per-application rasai deta hai; SASE network aur security (SWG, CASB, ZTNA, firewall) ko cloud service mein jor deta hai.ZTNA grants per-application access after identity and device checks; SASE converges network and security (SWG, CASB, ZTNA, firewall) into a cloud service.