NSE6_FWB-6.4 Exam Questions
65 real NSE6_FWB-6.4 exam questions with expert-verified answers and explanations. Page 1 of 2.
- Question #1
Review the following configuration: What is the expected result of this configuration setting?
- Question #2
Which three statements about HTTPS on FortiWeb are true? (Choose three.)
- Question #3
What is one of the key benefits of the FortiGuard IP reputation feature?
- Question #4
How does FortiWeb protect against defacement attacks?
- Question #5
You are using HTTP content routing on FortiWeb. You want requests for web application A to be forwarded to a cluster of web servers, which all host the same web application. You wa...
- Question #6
When generating a protection configuration from an auto learning report what critical step must you do before generating the final protection configuration?
- Question #7
How does an ADOM differ from a VDOM?
- Question #8
You are configuring FortiAnalyzer to store logs from FortiWeb. Which is true?
- Question #9
Which of the following would be a reason for implementing rewrites?
- Question #10
A client is trying to start a session from a page that should normally be accessible only after they have logged in. When a start page rule detects the invalid session access, what...
- Question #11
Which is true about HTTPS on FortiWeb? (Choose three.)
- Question #12
Which of the following is true about Local User Accounts?
- Question #13
In which operation mode(s) can FortiWeb modify HTTP packets? (Choose two.)
- Question #14
What other consideration must you take into account when configuring Defacement protection
- Question #15
Under what circumstances would you want to use the temporary uncompress feature of FortiWeb?
- Question #16
You are deploying FortiWeb 6.4 in an Amazon Web Services cloud. Which 2 lines of this initial setup via CLI are incorrect? (Choose two.)
- Question #17
How does offloading compression to FortiWeb benefit your network?
- Question #18
When the FortiWeb is configured in Reverse Proxy mode and the FortiGate is configured as an SNAT device, what IP address will the FortiGate's Real Server configuration point at?
- Question #19
How does your FortiWeb configuration differ if the FortiWeb is upstream of the SNAT device instead of downstream of the SNAT device?
- Question #20
You are using HTTP content routing on FortiWeb. Requests for web app A should be forwarded to a cluster of web servers which all host the same web app. Requests for web app B shoul...
- Question #21
In Reverse proxy mode, how does FortiWeb handle traffic that does not match any defined policies?
- Question #22
You've configured an authentication rule with delegation enabled on FortiWeb. What happens when a user tries to access the web application?
- Question #23
When integrating FortiWeb and FortiAnalyzer, why is the selection for FortiWeb Version critical? (Choose two)
- Question #24
What role does FortiWeb play in ensuring PCI DSS compliance?
- Question #25
Which operation mode does not require additional configuration in order to allow FTP traffic to your web server?
- Question #26
Which implementation is best suited for a deployment that must meet compliance criteria?
- Question #27
Which of the following FortiWeb features is part of the mitigation tools against OWASP A4 threats?
- Question #28
What capability can FortiWeb add to your Web App that your Web App may or may not already have?
- Question #29
An e-commerce web app is used by small businesses. Clients often access it from offices behind a router, where clients are on an IPv4 private network LAN. You need to protect the w...
- Question #30
Under which circumstances does FortiWeb use its own certificates? (Choose Two)
- Question #31
What benefit does Auto Learning provide?
- Question #32
Which two FortiWeb operation modes support machine learning? (Choose two.)
- Question #33
In order for FortiWeb to provide the best possible protection for servers, how should you deploy it?
- Question #34
In which two ways does FortiWeb handle traffic that does not match any defined policies? (Choose two.)
- Question #35
Which operation mode requires additional configuration in order to allow FTP traffic into your web server?
- Question #36
Which two statements about running a vulnerability scan are true? (Choose two.)
- Question #37
FortiWeb offers the same load balancing algorithms as FortiGate. Which two Layer 7 switch methods does FortiWeb also offer? (Choose two.)
- Question #38
Which would be a reason to implement HTTP rewriting?
- Question #39
Refer to the exhibit. FortiADC is applying SNAT to all inbound traffic going to the servers. When an attack occurs, FortiWeb blocks traffic based on the 192.0.2.1 source IP address...
- Question #40
Which statement about local user accounts is true?
- Question #41
Refer to the exhibit. Based on the configuration, what would happen if this FortiWeb were to lose power? (Choose two.)
- Question #42
Refer to the exhibit. FortiWeb is configured to block traffic from Japan to your web application server. However, in the logs, the administrator is seeing traffic allowed from one...
- Question #43
Under which circumstance would you not use compression on FortiWeb?
- Question #44
In which operation mode does FortiWeb offer both the ability to offload SSL as well as re-encrypt SSL?
- Question #45
What are two advantages of using the URL rewriting and redirecting feature on FortiWeb? (Choose two.)
- Question #46
Which command allows you to temporarily terminate a process that is consuming excessive amounts of resources?
- Question #47
Which two statements about the anti-defacement feature on FortiWeb are true? (Choose two.)
- Question #48
What must you do with your FortiWeb logs to ensure PCI DSS compliance?
- Question #49
What role does FortiWeb play in ensuring PCI DSS compliance?
- Question #50
Refer to the exhibit. There is only one administrator account configured on FortiWeb. What must an administrator do to restrict any brute force attacks that attempt to gain access...