📝 Section Review: Security Profiles
اہم نکاتKey TakeawaysKey Takeaways
- پروفائلز پالیسیز پر لگتے ہیں: اینٹی وائرس، IPS سینسر، ویب فلٹر، ایپلی کیشن کنٹرول — HTTPS کے لیے SSL/SSH انسپیکشن پروفائل کے ساتھ۔Profiles policies par lagte hain: antivirus, IPS sensor, web filter, application control — HTTPS ke liye SSL/SSH inspection profile ke saath.Profiles attach to policies: antivirus, IPS sensor, web filter, application control — plus an SSL/SSH inspection profile for HTTPS.
- انسپیکشن موڈ ہر پالیسی پر الگ سیٹ ہو سکتا ہے — جہاں جو مناسب ہو فلو یا پراکسی ملائیں۔Inspection mode har policy par alag set ho sakta hai — jahan jo munasib ho flow ya proxy milayen.Inspection mode can be set per policy — mix flow and proxy where each fits.
- ڈیپ HTTPS انسپیکشن کے لیے کلائنٹس پر FortiGate CA چاہیے، ورنہ سرٹیفکیٹ وارننگز آئیں گی۔Deep HTTPS inspection ke liye clients par FortiGate CA chahiye, warna certificate warnings aayengi.Deep HTTPS inspection needs the FortiGate CA on clients, otherwise expect certificate warnings.
- FortiSandbox + FortiGuard ML ماڈلز رویے سے زیرو ڈے تھریٹس پکڑتے ہیں؛ زیرو ٹرسٹ کا مطلب ہے کبھی بھروسا نہیں، ہمیشہ ویریفائی، ہر ایپلی کیشن کے لیے۔FortiSandbox + FortiGuard ML models rawaiye se zero-day threats pakarte hain; Zero Trust ka matlab hai kabhi bharosa nahi, hamesha verify, har application ke liye.FortiSandbox + FortiGuard ML models catch zero-day threats by behavior; Zero Trust means never trust, always verify, per application.
خود جانچ (مشق)Self-Check (Practice)Self-Check (Practice)
یہ مشقی سوالات ہیں، امتحانی سوالات نہیں۔These are practice questions, not exam questions.These are practice questions, not exam questions.
❓ فلو بیسڈ بمقابلہ پراکسی بیسڈ انسپیکشن — ہر ایک کب بہتر ہے؟Flow-based vs proxy-based inspection — har aik kab behtar hai?Flow-based vs proxy-based inspection — when does each win?
فلو موڈ پیکٹس کو بفر کیے بغیر اِن لائن اسکین کرتا ہے — تیز؛ پراکسی موڈ پورا کنٹینٹ ری کنسٹرکٹ کرتا ہے — گہرا انسپیکشن، زیادہ CPU، اور کچھ فیچرز کو لازمی چاہیے۔Flow mode packets ko buffer kiye baghair inline scan karta hai — tez; proxy mode poora content reconstruct karta hai — gehra inspection, zyada CPU, aur kuch features ko lazmi chahiye.Flow mode scans packets inline without buffering — fast; proxy mode reconstructs full content — deeper inspection, more CPU, and required by some features.
❓ IPS اور ایپلی کیشن کنٹرول میں کیا فرق ہے؟IPS aur application control mein kya farq hai?What is the difference between IPS and application control?
IPS مشہور حملہ سگنیچرز بلاک کرتا ہے؛ ایپلی کیشن کنٹرول سوشل میڈیا یا فائل شیئرنگ جیسی ایپلی کیشنز کی پہچان کر کے انہیں کنٹرول کرتا ہے۔IPS mashhoor hamla signatures block karta hai; application control social media ya file sharing jaisi applications ki pehchan kar ke unhen control karta hai.IPS blocks known attack signatures; application control identifies and controls applications like social media or file sharing.
❓ FortiSandbox زیرو ڈے مال ویئر کیسے پکڑتا ہے؟FortiSandbox zero-day malware kaise pakarta hai?How does FortiSandbox catch zero-day malware?
یہ نامعلوم فائلز کو الگ VM میں چلا کر رویہ جج کرتا ہے — بغیر سگنیچر والا زیرو ڈے مال ویئر پکڑتا ہے؛ ورڈکٹس پوری سیکیورٹی فیبرک میں شیئر ہوتے ہیں۔Yeh namaloom files ko alag VM mein chala kar rawaiya judge karta hai — bina signature wala zero-day malware pakarta hai; verdicts poori Security Fabric mein share hote hain.It detonates unknown files in an isolated VM and judges behavior — catching zero-day malware with no signature; verdicts are shared across the Security Fabric.
❓ ZTNA بمقابلہ SASE — ہر ایک کیا ہے؟ZTNA vs SASE — har aik kya hai?ZTNA vs SASE — what is each one?
ZTNA آئیڈینٹیٹی اور ڈیوائس چیکس کے بعد per-application رسائی دیتا ہے؛ SASE نیٹ ورک اور سیکیورٹی (SWG، CASB، ZTNA، فائر وال) کو کلاؤڈ سروس میں جوڑ دیتا ہے۔ZTNA identity aur device checks ke baad per-application rasai deta hai; SASE network aur security (SWG, CASB, ZTNA, firewall) ko cloud service mein jor deta hai.ZTNA grants per-application access after identity and device checks; SASE converges network and security (SWG, CASB, ZTNA, firewall) into a cloud service.