Labour Day - Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dpm65

NSE6_FWB-6.4 Fortinet NSE 6 - FortiWeb 6.4 Questions and Answers

Questions 4

The FortiWeb machine learning (ML) feature is a two-phase analysis mechanism.

Which two functions does the first layer perform? (Choose two.)

Options:

A.

Determines whether an anomaly is a real attack or just a benign anomaly that should be ignored

B.

Builds a threat model behind every parameter and HTTP method

C.

Determines if a detected threat is a false-positive or not

D.

Determines whether traffic is an anomaly, based on observed application traffic over time

Buy Now
Questions 5

What benefit does Auto Learning provide?

Options:

A.

Automatically identifies and blocks suspicious IPs

B.

FortiWeb scans all traffic without taking action and makes recommendations on rules

C.

Automatically builds rules sets

D.

Automatically blocks all detected threats

Buy Now
Questions 6

An e-commerce web app is used by small businesses. Clients often access it from offices behind a router, where clients are on an IPv4 private network LAN. You need to protect the web application from denial of service attacks that use request floods.

What FortiWeb feature should you configure?

Options:

A.

Enable “Shared IP” and configure the separate rate limits for requests from NATted source IPs.

B.

Configure FortiWeb to use “X-Forwarded-For:” headers to find each client’s private network IP, and to block attacks using that.

C.

Enable SYN cookies.

D.

Configure a server policy that matches requests from shared Internet connections.

Buy Now
Questions 7

Which three statements about HTTPS on FortiWeb are true? (Choose three.)

Options:

A.

For SNI, you select the certificate that FortiWeb will present in the server pool, not in the server policy.

B.

After enabling HSTS, redirects to HTTPS are no longer necessary.

C.

In true transparent mode, the TLS session terminator is a protected web server.

D.

Enabling RC4 protects against the BEAST attack, but is not recommended if you configure FortiWeb to only offer TLS 1.2.

E.

In transparent inspection mode, you select which certificate that FortiWeb will present in the server pool, not in the server policy.

Buy Now
Questions 8

Refer to the exhibits.

NSE6_FWB-6.4 Question 8

NSE6_FWB-6.4 Question 8

FortiWeb is configured in reverse proxy mode and it is deployed downstream to FortiGate. Based on the configuration shown in the exhibits, which of the following statements is true?

Options:

A.

FortiGate should forward web traffic to the server pool IP addresses.

B.

The configuration is incorrect. FortiWeb should always be located upstream to FortiGate.

C.

You must disable the Preserve Client IP setting on FotriGate for this configuration to work.

D.

FortiGate should forward web traffic to virtual server IP address.

Buy Now
Exam Code: NSE6_FWB-6.4
Exam Name: Fortinet NSE 6 - FortiWeb 6.4
Last Update: Apr 26, 2024
Questions: 56

PDF + Testing Engine

$56  $159.99

Testing Engine

$42  $119.99
buy now NSE6_FWB-6.4 testing engine

PDF (Q&A)

$35  $99.99
buy now NSE6_FWB-6.4 pdf
dumpsmate guaranteed to pass
24/7 Customer Support

DumpsMate's team of experts is always available to respond your queries on exam preparation. Get professional answers on any topic of the certification syllabus. Our experts will thoroughly satisfy you.

Site Secure

mcafee secure

TESTED 28 Apr 2024