Pass Your Next NSE6_FWB-6.4 Certification Exam Easily & Hassle Free [Q12-Q37]

Share

Pass Your Next NSE6_FWB-6.4 Certification Exam Easily & Hassle Free

Free Fortinet NSE6_FWB-6.4 Exam Question Practice Exams


Fortinet NSE6_FWB-6.4 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Configure API protection and bot mitigation
  • Configure caching and compression
Topic 2
  • Configure server pools, policies, and protected hostnames
  • Trobleshoot encryption and authentication related issues
Topic 3
  • Troublehsoot application delivery related issues
  • Configure various threat mitigation features
Topic 4
  • Configure various access control and tracking methods
  • Troubleshoot deployment and system related issues
Topic 5
  • Configure machine learning and bot detection
  • Configure SSL inspection and offloading
Topic 6
  • Configure HTTP content routing, rewriting, and redirection
  • Mitigate attacks on authentication

 

NEW QUESTION 12
What is one of the key benefits of the FortiGuard IP reputation feature?

  • A. It provides a document of IP addresses that are suspect, so that administrators can manually update their blacklists.
  • B. It maintains a list of public IPs with a bad reputation for participating in attacks.
  • C. It maintains a list of private IP addresses.
  • D. It is updated once per year.

Answer: B

Explanation:
Explanation
FortiGuard IP Reputation service assigns a poor reputation, including virus-infected clients and malicious spiders/crawlers.

 

NEW QUESTION 13
Refer to the exhibit.

FortiADC is applying SNAT to all inbound traffic going to the servers. When an attack occurs, FortiWeb blocks traffic based on the 192.0.2.1 source IP address, which belongs to FortiADC. The setup is breaking all connectivity and genuine clients are not able to access the servers.
What must the administrator do to avoid this problem? (Choose two.)

  • A. Enable the Add X-Forwarded-For setting on FortiWeb.
  • B. Place FortiWeb in front of FortiADC.
  • C. No Special configuration is required; connectivity will be re-established after the set timeout.
  • D. Enable the Use X-Forwarded-For setting on FortiWeb.

Answer: B,D

Explanation:
Explanation
Configure your load balancer to insert or append to an X-Forwarded-For:, X-Real-IP:, or other HTTP X-header. Also configure FortiWeb to find the original attacker's or client's IP address in that HTTP header

 

NEW QUESTION 14
Refer to the exhibits.


FortiWeb is configured in reverse proxy mode and it is deployed downstream to FortiGate. Based on the configuration shown in the exhibits, which of the following statements is true?

  • A. The configuration is incorrect. FortiWeb should always be located upstream to FortiGate.
  • B. FortiGate should forward web traffic to the server pool IP addresses.
  • C. You must disable the Preserve Client IP setting on FotriGate for this configuration to work.
  • D. FortiGate should forward web traffic to virtual server IP address.

Answer: D

 

NEW QUESTION 15
Under which circumstances does FortiWeb use its own certificates? (Choose Two)

  • A. HTTPS access to GUI
  • B. HTTPS to clients
  • C. Secondary HTTPS connection to server where FortiWeb acts as a client
  • D. HTTPS to FortiGate

Answer: A,C

 

NEW QUESTION 16
When is it possible to use a self-signed certificate, rather than one purchased from a commercial certificate authority?

  • A. If you are an enterprise whose employees use only mobile devices
  • B. If you are an enterprise whose computers all trust your active directory or other CA server
  • C. If you are an enterprise whose resources do not need security
  • D. If you are a small business or home office

Answer: B

 

NEW QUESTION 17
In which scenario might you want to use the compression feature on FortiWeb?

  • A. Never, since most traffic today is already highly compressed
  • B. When you are serving many corporate road warriors using 4G tablets and phones
  • C. When you want to reduce buffering of video streams
  • D. When you are offering a music streaming service

Answer: B

Explanation:
Explanation
https://training.fortinet.com/course/view.php?id=3363
When might you want to use the compression feature on FortiWeb? When you are serving many road warriors who are using 4G tablets and phones

 

NEW QUESTION 18
How does offloading compression to FortiWeb benefit your network?

  • A. reduces file size on the client's storage
  • B. free up resources on the database server
  • C. free up resources on the FortiGate
  • D. Free up resources on the web server

Answer: D

 

NEW QUESTION 19
What benefit does Auto Learning provide?

  • A. FortiWeb scans all traffic without taking action and makes recommendations on rules
  • B. Automatically identifies and blocks suspicious IPs
  • C. Automatically blocks all detected threats
  • D. Automatically builds rules sets

Answer: D

 

NEW QUESTION 20
True transparent proxy mode is best suited for use in which type of environment?

  • A. New networks where infrastructure is not yet defined
  • B. Flexible environments where you can easily change the IP addressing scheme
  • C. Small office to home office environments
  • D. Environments where you cannot change the IP addressing scheme

Answer: B

Explanation:
Explanation
"Because blocking is not guaranteed to succeed in offline mode, this mode is best used during the evaluation and planning phase, early in implementation. Reverse proxy is the most popular operating mode. It can rewrite URLs, offload TLS, load balance, and apply NAT. For very large MSSP, true transparent mode has a significant advantage. You can drop it in without changing any schemes of limited IPv4 space-in transparent mode, you don't need to give IP addresses to the network interfaces on FortiWeb."

 

NEW QUESTION 21
Which of the following would be a reason for implementing rewrites?

  • A. Send connection to secure channel
  • B. Page has been moved to a new IP address
  • C. Page has been moved to a new URL
  • D. Replace vulnerable functions.

Answer: D

 

NEW QUESTION 22
Refer to the exhibit.

Many legitimate users are being identified as bots. FortiWeb bot detection has been configured with the settings shown in the exhibit. The FortiWeb administrator has already verified that the current model is accurate.
What can the administrator do to fix this problem, making sure that real bots are not allowed through FortiWeb?

  • A. Change Action under Action Settings to Alert
  • B. Enable Bot Confirmation
  • C. Change Model Type to Strict
  • D. Disable Dynamically Update Model

Answer: B

Explanation:
Explanation
Bot Confirmation
If the number of anomalies from a user has reached the Anomaly Count, the system executes Bot Confirmation before taking actions.
The Bot Confirmation is to confirm if the user is indeed a bot. The system sends RBE (Real Browser Enforcement) JavaScript or CAPTCHA to the client to double check if it's a real bot.

 

NEW QUESTION 23
When the FortiWeb is configured in Reverse Proxy mode and the FortiGate is configured as an SNAT device, what IP address will the FortiGate's Real Server configuration point at?

  • A. Server's real IP
  • B. IP Address of the Virtual Server on the FortiWeb
  • C. FortiWeb's real IP
  • D. Virtual Server IP on the FortiGate

Answer: D

 

NEW QUESTION 24
Review the following configuration:

What is the expected result of this configuration setting?

  • A. When machine learning (ML) is in its collecting phase, FortiWeb will not accept any samples from any source IP addresses.
  • B. When machine learning (ML) is in its running phase, FortiWeb will accept a set number of samples from the same source IP address.
  • C. When machine learning (ML) is in its collecting phase, FortiWeb will accept an unlimited number of samples from the same source IP address.
  • D. When machine learning (ML) is in its running phase, FortiWeb will accept an unlimited number of samples from the same source IP address.

Answer: C

 

NEW QUESTION 25
Refer to the exhibit.

FortiWeb is configured to block traffic from Japan to your web application server. However, in the logs, the administrator is seeing traffic allowed from one particular IP address which is geo-located in Japan.
What can the administrator do to solve this problem? (Choose two.)

  • A. Manually update the geo-location IP addresses for Japan.
  • B. If the IP address is configured as a geo reputation exception, remove it.
  • C. If the IP address is configured as an IP reputation exception, remove it.
  • D. Configure the IP address as a blacklisted IP address.

Answer: B,D

 

NEW QUESTION 26
When generating a protection configuration from an auto learning report what critical step must you do before generating the final protection configuration?

  • A. Restart the FortiWeb to clear the caches
  • B. Take the FortiWeb offline to apply the profile
  • C. Drill down in the report to correct any false positives.
  • D. Activate the report to create t profile

Answer: C

 

NEW QUESTION 27
Which two statements about running a vulnerability scan are true? (Choose two.)

  • A. Vulnerability scanning increases the load on FortiWeb, so it should be avoided.
  • B. You should run the vulnerability scan on a live website to get accurate results.
  • C. You should run the vulnerability scan in a test environment.
  • D. You should run the vulnerability scan during a maintenance window.

Answer: C,D

Explanation:
Explanation
Should the Vulnerability Scanner allow it, SVMS will set the scan schedule (or schedules) to run in a maintenance window. SVMS will advise Client of the scanner's ability to complete the scan(s) within the maintenance window.
Vulnerabilities on live web sites. Instead, duplicate the web site and its database in a test environment.

 

NEW QUESTION 28
An e-commerce web app is used by small businesses. Clients often access it from offices behind a router, where clients are on an IPv4 private network LAN. You need to protect the web application from denial of service attacks that use request floods.
What FortiWeb feature should you configure?

  • A. Enable SYN cookies.
  • B. Configure FortiWeb to use "X-Forwarded-For:" headers to find each client's private network IP, and to block attacks using that.
  • C. Enable "Shared IP" and configure the separate rate limits for requests from NATted source IPs.
  • D. Configure a server policy that matches requests from shared Internet connections.

Answer: A

 

NEW QUESTION 29
Which would be a reason to implement HTTP rewriting?

  • A. The original page has moved to a new URL
  • B. The original page has moved to a new IP address
  • C. To send the request to secure channel
  • D. To replace a vulnerable function in the requested URL

Answer: D

Explanation:
Explanation
Create a new URL rewriting rule.

 

NEW QUESTION 30
What capability can FortiWeb add to your Web App that your Web App may or may not already have?

  • A. SSL Inspection
  • B. High Availability
  • C. Automatic backup and recovery
  • D. HTTP/HTML Form Authentication

Answer: D

 

NEW QUESTION 31
Which of the following FortiWeb features is part of the mitigation tools against OWASP A4 threats?

  • A. Brute Force blocking
  • B. Sensitive info masking
  • C. Session Management
  • D. Poison Cookie detection

Answer: C

 

NEW QUESTION 32
A client is trying to start a session from a page that would normally be accessible only after the client has logged in.
When a start page rule detects the invalid session access, what can FortiWeb do? (Choose three.)

  • A. Display an access policy message, then allow the client to continue
  • B. Reply with a 403 Forbidden HTTP error
  • C. Redirect the client to the login page
  • D. Prompt the client to authenticate
  • E. Allow the page access, but log the violation

Answer: B,C,E

 

NEW QUESTION 33
You've configured an authentication rule with delegation enabled on FortiWeb.
What happens when a user tries to access the web application?

  • A. FortiWeb replies with a HTTP challenge of behalf of the server, the if the user authenticates successfully, FortiWeb allows the request and also includes credentials in the request that it forwards to the web app
  • B. FrotiWeb redirects users to a FortiAuthenticator page, then if the user authenticates successfully, FortiGate signals to FortiWeb to allow access to the web app
  • C. ForitWeb redirects the user to the web app's authentication page
  • D. FortiWeb forwards the HTTP challenge from the server to the client, then monitors the reply, allowing access if the user authenticates successfully

Answer: B

 

NEW QUESTION 34
......

Ace NSE6_FWB-6.4 Certification with 58 Actual Questions: https://www.trainingdump.com/Fortinet/NSE6_FWB-6.4-practice-exam-dumps.html

PASS Fortinet NSE6_FWB-6.4 EXAM WITH UPDATED DUMPS: https://drive.google.com/open?id=1AdJ11ggYy3qMAgkQxKBvz5AK-KFsMDE_

0
0
0
0