Vcehome > Fortinet > NSE 6 Network Security Specialist > NSE6_FWB-6.1 > NSE6_FWB-6.1 Online Practice Questions and Answers

NSE6_FWB-6.1 Online Practice Questions and Answers

Questions 4

Which of the following would be a reason for implementing rewrites?

A. Page has been moved to a new URL

B. Page has been moved to a new IP address

C. Replace vulnerable functions.

D. Send connection to secure channel

Browse 30 Q&As
Questions 5

A client is trying to start a session from a page that should normally be accessible only after they have

logged in.

When a start page rule detects the invalid session access, what can FortiWeb do? (Choose three.)

A. Reply with a "403 Forbidden" HTTP error

B. Allow the page access, but log the violation

C. Automatically redirect the client to the login page

D. Display an access policy message, then allow the client to continue, redirecting them to their requested page

E. Prompt the client to authenticate

Browse 30 Q&As
Questions 6

When viewing the attack logs on your FortiWeb, which IP Address is shown for the client when using XFF Header rules?

A. FortiGate's public IP

B. FortiGate's local IP

C. FortiWeb's IP

D. Client's real IP

Browse 30 Q&As
Questions 7

Under what circumstances would you want to use the temporary uncompress feature of FortiWeb?

A. In the case of compression being done on the FortiWeb, to inspect the content of the compressed file

B. In the case of the file being a .MP3 music file

C. In the case of compression being done on the web server, to inspect the content of the compressed file.

D. In the case of the file being an .MP4 video

Browse 30 Q&As
Questions 8

When the FortiWeb is configured in Reverse Proxy mode and the FortiGate is configured as an SNAT device, what IP address will the FortiGate's Real Server configuration point at?

A. Virtual Server IP on the FortiGate

B. Server's real IP

C. FortiWeb's real IP

D. IP Address of the Virtual Server on the FortiWeb

Browse 30 Q&As
Questions 9

In Reverse proxy mode, how does FortiWeb handle traffic that does not match any defined policies?

A. Non-matching traffic is allowed

B. non-Matching traffic is held in buffer

C. Non-matching traffic is Denied

D. Non-matching traffic is rerouted to FortiGate

Browse 30 Q&As
Questions 10

What role does FortiWeb play in ensuring PCI DSS compliance?

A. PCI specifically requires a WAF

B. Provides credit card processing capabilities

C. Provide ability to securely process cash transactions

D. Provides load balancing between multiple web servers

Browse 30 Q&As
Questions 11

Which implementation is best suited for a deployment that must meet compliance criteria?

A. SSL Inspection with FortiWeb in Transparency mode

B. SSL Offloading with FortiWeb in reverse proxy mode

C. SSL Inspection with FrotiWeb in Reverse Proxy mode

D. SSL Offloading with FortiWeb in Transparency Mode

Browse 30 Q&As
Questions 12

Under which circumstances does FortiWeb use its own certificates? (Choose Two)

A. Secondary HTTPS connection to server where FortiWeb acts as a client

B. HTTPS to clients

C. HTTPS access to GUI

D. HTTPS to FortiGate

Browse 30 Q&As
Questions 13

What benefit does Auto Learning provide?

A. Automatically identifies and blocks suspicious IPs

B. FortiWeb scans all traffic without taking action and makes recommendations on rules

C. Automatically builds rules sets

D. Automatically blocks all detected threats

Browse 30 Q&As
Exam Code: NSE6_FWB-6.1
Exam Name: Fortinet NSE 6 - FortiWeb 6.1
Last Update: May 10, 2024
Questions: 30 Q&As

PDF

$49.99

VCE

$59.99

PDF + VCE

$67.99