問題文
A team writes a rule that allows one collaboration application for a user group. They then ask what still needs to be added so that the allowed sessions are checked for malicious content. Which statement describes the division of roles correctly?
選択肢
- Inspection is applied to every allowed session automatically using the platform default settings, so attaching profiles is only necessary when the default action must be changed for a particular class of traffic.
- The rule performs both the allow decision and the content checks, and inspection profiles only change how the resulting log entries are formatted before they reach the reporting system.
- Inspection profiles replace the rule once they are attached, because they carry their own source, destination, and application criteria and are evaluated in place of it.
- The rule decides which sessions are allowed, and the inspection profiles attached to that rule decide what is looked for inside the sessions it allows.