FCP_FWB_AD-7.4 Exam Questions
75 real FCP_FWB_AD-7.4 exam questions with expert-verified answers and explanations. Page 2 of 2.
- Question #52Advanced Web Protection
Which two statements accurately describe the FortiWeb machine learning (ML) feature? (Choose two.)
machine learninganomaly detectionfalse positivesthreat analytics - Question #53Deployment and Initial Configuration
Which type of environment is most suited for True transparent proxy mode?
true transparent proxyoperation modesnetwork topologyIP addressing - Question #54Policy Configuration
What is one of the key benefits of the FortiGuard IP reputation feature?
IP reputationFortiGuardthreat intelligencebad IP list - Question #55Advanced Web Protection
Which two statements about HTTPS on FortiWeb are true? (Choose two.)
HTTPSTLStransparent inspectionSSL certificate - Question #56Policy Configuration
When FortiWeb is enforcing client sessions with SAML authentication, which SAML role does FortiWeb play?
SAMLauthenticationservice providerSSO - Question #57Advanced Web Protection
Refer to the exhibit, which shows SSL offloading. Which device is using the private key for the protected web server?
SSL offloadingprivate keyTLS terminationcertificate management - Question #58Policy Configuration
You have configured an authentication rule with delegation enabled on FortiWeb. What happens when a user tries to access the web application?
authentication delegationHTTP authenticationcredential forwardingweb app auth - Question #59Advanced Web Protection
Which is an example of a typical SQL injection attack?
SQL injectionattack patternsweb attacksinput validation - Question #60Bot Mitigation
Refer to the exhibit. What is the most likely cause of this attack message?
bot detectionweb scrapingattack logscontent download - Question #61Advanced Web Protection
Which configuration element defines the field names, sizes, and data types of inputs that are enforced by FortiWeb?
API schemaAPI protectioninput validationAPI security - Question #62Bot Mitigation
Which machine learning (ML) model is used for bot detection on FortiWeb?
machine learningSVMbot detectionML algorithms - Question #63Deployment and Initial Configuration
Which two statements most accurately describe a web application firewall (WAF)? (Choose two.)
WAFapplication layerserver protectionweb application firewall - Question #64Troubleshooting
A FortiWeb is deployed behind a FortiGate configured to insert the X-Forwarded-For (XFF) header in all HTTP traffic. When you view the attack logs on FortiWeb, which source IP addr...
X-Forwarded-Forattack logssource IPFortiGate integration - Question #65Troubleshooting
Refer to the exhibit, showing lines of configuration. What is this a section of?
CLI commandsshow commandFortiWeb configurationtroubleshooting - Question #66Advanced Web Protection
Refer to the exhibit. Which statement about the Strictness Level for Anomaly setting is correct?
machine learninganomaly detectionstrictness levelML tuning - Question #67Advanced Web Protection
Which configuration item must be defined to start creating and enforcing a machine learning (ML) API detection policy?
machine learningAPI detectionAPI schemaML policy - Question #68Advanced Web Protection
Which response body type is supported for API machine learning (ML) detection?
API ML detectionJSONresponse bodymachine learning - Question #69Policy Configuration
When FortiWeb triggers a redirect action, which HTTP code does it send to the client to inform the browser of the new URL?
redirect actionHTTP 301HTTP response codes - Question #71Deployment and Initial Configuration
Which two configuration items are synchronized between two FortiWeb devices in an active- active high availability (HA) deployment? (Choose two.)
active-active HAhigh availabilityconfiguration syncHA deployment - Question #72Troubleshooting
Refer to the exhibit. FortiWeb is configured to block traffic from Japan to a web application server. However, in the logs, the administrator is seeing traffic allowed from an IP a...
geo IP blockingIP reputation exceptiongeo locationblocklist - Question #73Deployment and Initial Configuration
Refer to the exhibit. There is only one administrator account configured on FortiWeb and IPv6 is not configured on any interface. What should an administrator do to restrict any br...
management accessIP restrictionbrute forceadmin security - Question #74Policy Configuration
What potential risk is there in using a greedy regular expression match in URL rewriting, when large amounts of content need to be matched?
URL rewritinggreedy regexRAM usageperformance - Question #75Bot Mitigation
What key factor must be considered when setting brute force rate limiting and blocking?
brute forcerate limitingshared IPNAT - Question #76Denial of Service Protection
What is the main benefit of using the period block action?
period blockIP layer blockingblock actionattack mitigation - Question #77Deployment and Initial Configuration
Refer to the exhibits. A FortiWeb device is configured in reverse proxy mode and it is deployed downstream from a FortiGate device. Based on the configuration shown in the exhibits...
reverse proxyvirtual server IPFortiGate integrationnetwork topology