FCP_FWB_AD-7.4 Exam Questions
75 real FCP_FWB_AD-7.4 exam questions with expert-verified answers and explanations. Page 1 of 2.
- Question #1Deployment
Refer to the exhibit. A FortiWeb device is deployed upstream of a device performing source network address translation (SNAT) or load balancing. What configuration must you perform...
SNATclient IP preservationFortiWeb configurationX-Forwarded-For - Question #2Incidents and Remediation
Refer to the exhibit. Attack ID 20000010 is brute force logins. Which statement is accurate about the potential attack?
brute force attackFortiWeb attack IDssuspicious trafficattack analysis - Question #3Analytics
Which three stages are part of creating a machine learning (ML) bot detection algorithm? (Choose three.)
machine learningbot detectionmodel buildingsample collecting - Question #4Deployment
Under which two circumstances does FortiWeb use its own certificates? (Choose two.)
SSL certificatesHTTPSFortiWeb certificate useadmin GUI - Question #5Deployment
You are using HTTP content routing on FortiWeb. You want requests for web application A to be forwarded to a cluster of web servers, which all host the same web application. You wa...
HTTP content routingserver poolvirtual serverpolicy routing - Question #6Incidents and Remediation
What can a FortiWeb administrator do if a client has been incorrectly period blocked?
period blockIP blocklistblock releaseFortiWeb remediation - Question #7Analytics
Which two functions does the first layer of the FortiWeb anomaly machine learning (ML) analysis mechanism perform? (Choose two.)
anomaly detectionmachine learning layersHTTP parameter modelingprobability model - Question #9Deployment
Which Layer 7 routing method does FortiWeb support?
Layer 7 routingHTTP content routingFortiWeb routing methodsapplication delivery - Question #10System Maintenance
Which command will enable debugging for the FortiWeb user tracking feature?
debug commandsuser trackingFortiWeb CLIdiagnose debug - Question #11CMDB and Device Management
Refer to the exhibit. What is true about this FortiWeb device? (Choose two.)
FortiWeb firmware versiondevice statusupgrade historybuild info - Question #12Deployment
Which high availability (HA) mode uses gratuitous Address Resolution Protocol (ARP) to advertise a failover event to neighboring network devices?
high availabilityActive-Passivegratuitous ARPfailover advertisement - Question #13Deployment
In SAML deployments, which server contains user authentication credentials (username/password)?
SAMLidentity providerauthentication credentialsSSO architecture - Question #14Incidents and Remediation
What are two possible impacts of a DoS attack on your web server? (Choose two.)
DoS attackconnection exhaustionmemory exhaustionweb server impact - Question #15Deployment
Which two items can be defined in a FortiWeb XML Protection Rule? (Choose two.)
XML protectionXML schemarequest URLFortiWeb rule configuration - Question #16System Maintenance
Which two statements about running a vulnerability scan are true? (Choose two.)
vulnerability scanmaintenance windowtest environmentscan best practices - Question #17Incidents and Remediation
An administrator notices multiple IP addresses attempting to log in to an application frequently, within a short time period. They suspect attackers are attempting to guess user pa...
brute force logincustom policyattack mitigationFortiWeb rate limiting - Question #18Bot Mitigation
Review the following configuration: Which result would you expect from this configuration setting?
machine learningML running phasesample collectionbot detection - Question #19Bot Mitigation
Refer to the exhibit. What can you conclude from this support vector machine (SVM) plot of a potential bot connection?
SVM plotbot detectionmachine learninganomaly analysis - Question #20Policy Configuration
What are two results of enabling monitor mode on FortiWeb? (Choose two.)
monitor modeprofile actionsDoS protectionalert logging - Question #21Deployment and Initial Configuration
Which two objects are required to configure a server policy in reverse proxy mode without content routing? (Choose two.)
server policyreverse proxyvirtual serverprotected hostname - Question #22Deployment and Initial Configuration
When is it possible to use a self-signed certificate, rather than one purchased from a commercial certificate authority?
self-signed certificatecertificate authorityPKISSL/TLS - Question #23Deployment and Initial Configuration
Refer to the exhibit. Which statement is true?
SSL inspectionSSL offloadingtraffic decryptionHTTPS - Question #24Bot Mitigation
How are bot machine learning (ML) models different from API or anomaly detection models?
bot ML modelsanomaly detectionconnection analysismulti-connection analysis - Question #25Deployment and Initial Configuration
In which two operating modes can FortiWeb modify HTTP packets? (Choose two.)
operating modesreverse proxyvirtual proxyHTTP modification - Question #26Advanced Web Protection
Which three security features must you configure on FortiWeb to protect API connections? (Choose three.)
API protectionML-based APIAPI schema validationAPI key enforcement - Question #27Troubleshooting
Refer to the exhibit. FortiADC is applying SNAT to all inbound traffic going to the servers. When an attack occurs, FortiWeb blocks traffic based on the 192.0.2.1 source IP address...
SNATX-Forwarded-Forclient IP preservationFortiADC integration - Question #28
When is it possible to use a self-signed certificate, rather than one purchased from a commercial certificate authority?
- Question #29
In which scenario might you want to use the compression feature on FortiWeb?
- Question #30Advanced Web Protection
The FortiWeb machine learning (ML) feature is a two-phase analysis mechanism. Which two functions does the first layer perform? (Choose two.)
machine learningtwo-phase analysisanomaly detectionthreat model - Question #31
In which two operating modes can FortiWeb modify HTTP packets? (Choose two.)
- Question #32Compliance and Reporting
When viewing the attack logs on FortiWeb, which client IP address is shown when you are using XFF header rules?
X-Forwarded-Forattack logsclient IPXFF header - Question #33
Which three statements about HTTPS on FortiWeb are true? (Choose three.)
- Question #34
When user tracking is configured, how does FortiWeb identify which users to track?
- Question #35Bot Mitigation
Which algorithm is used to build mathematical models for bot detection?
SVMbot detectionmachine learning algorithmmathematical model - Question #36
A client is trying to start a session from a page that would normally be accessible only after the client has logged in. When a start page rule detects the invalid session access,...
- Question #37
What must you do with your FortiWeb logs to ensure PCI DSS compliance?
- Question #38
What role does FortiWeb play in ensuring PCI DSS compliance?
- Question #39
In which operation mode does FortiWeb offer both the ability to offload SSL as well as re-encrypt SSL?
- Question #40
What are two advantages of using the URL rewriting and redirecting feature on FortiWeb? (Choose two.)
- Question #41Advanced Web Protection
Which two statements about the anti-defacement feature on FortiWeb are true? (Choose two.)
anti-defacementchange detectionweb backupdatabase protection - Question #42Compliance and Reporting
Which implementation is most suited for a deployment that must meet PCI DSS compliance criteria?
PCI DSSSSL offloadingcompliance modereverse proxy - Question #43Deployment and Initial Configuration
Review the following configuration: What are two routing behaviors that you can expect on FortiWeb after this configuration change? (Choose two.)
routing behaviornon-HTTP trafficvirtual servertraffic policy - Question #44Advanced Web Protection
An attacker attempts to send an SQL injection attack containing the known attack string 'root'; -- through an API call. Which FortiWeb inspection feature will be able to detect thi...
SQL injectionknown signaturesAPI attack detectionsignature-based detection - Question #45Policy Configuration
Refer to the exhibit. What are two additional configuration elements that you must be configure for this API gateway? (Choose two.)
API gatewayrate limitingURL prefixesAPI configuration - Question #46Policy Configuration
Which would be a reason to implement HTTP rewriting?
HTTP rewritingURL manipulationvulnerability mitigationURL replacement - Question #47Advanced Web Protection
What is the difference between an API gateway protection schema and a machine learning (ML) API protection schema?
API gateway schemaML API protectionschema comparisonadministrator control - Question #48Advanced Web Protection
Refer to the exhibits. What will happen when a client attempts a mousedown cross-site scripting highlighted signature?
XSSattack signaturessignature actioncross-site scripting - Question #49Deployment and Initial Configuration
Which high availability mode is commonly used to integrate with a traffic distributer like FortiADC?
high availabilityactive-activeFortiADCload balancing - Question #50Policy Configuration
A customer wants to be able to index your websites for search and advertisement purposes. What is the easiest way to allow this on a FortiWeb?
trusted IPsearch engine crawlersbot allowlistIP exception - Question #51Deployment and Initial Configuration
You can configure FortiWeb to send traffic to third-party IPS/IDS devices through network interfaces for traffic monitoring. Which two operation modes support this feature? (Choose...
operation modesoffline protectiontrue transparent proxyIPS/IDS mirroring