
2021 Pass4cram Fortinet NSE6_FWB-6.0 Dumps and Exam Test Engine
Fortinet NSE6_FWB-6.0 DUMPS WITH REAL EXAM QUESTIONS
NEW QUESTION 12
Under what circumstances would youwant to use the temporary uncompress feature of FortiWeb?
- A. In the case of compression being done on the FortiWeb, to inspect the content of the compressed file
- B. In the case of the file being an .MP4 video
- C. In the case of the file being a .MP3 music file
- D. In the case of compression being done on the web server, to inspect the content of the compressed file.
Answer: D
NEW QUESTION 13
In which operation mode(s) can FortiWeb modify HTTP packets? (Choose two.)
- A. True transparent proxy
- B. Reverse proxy
- C. Transparent Inspection
- D. Offlineprotection
Answer: B
NEW QUESTION 14
What can an administrator do if a client has been incorrectly Period Blocked?
- A. Nothing, it is not possible to override a Period Block
- B. Manually release the IP from thetemporary Blacklist
- C. Force a new IP address to the client.
- D. Disconnect the client from the network
Answer: B
NEW QUESTION 15
What capability can FortiWeb add to your Web App that your Web App may or may not already have?
- A. High Availability
- B. Automatic backup and recovery
- C. SSL Inspection
- D. HTTP/HTML Form Authentication
Answer: C
NEW QUESTION 16
How does your FortiWeb configuration differ if the FortiWeb is upstream of the SNAT device instead of downstream of the SNAT device?
- A. You must enable "Add" X-Forwarded-For: instead of the "Use" X-Forwarded-For: option.
- B. You must enable the "Use" X-Forwarded-For: option.
- C. No special configuration required
- D. FortiWeb must be set for Transparent Mode
Answer: B
NEW QUESTION 17
- A. It also forwards requests for web app B to the virtual serverfor policy
- B. You must put the single web server into a server pool in order to use it with HTTP content routing.
- C. Static or policy-based routes are not required.
- D. To achieve HTTP content routing, you must chain policies: the first policy accepts all traffic, and forwards requests for web app A to the virtual server for policy
- E. Policy A and Policy B apply their app-specific protection profiles, and then distribute that app's traffic among all members of the server farm.
- F. The server policy applies the same protection profile to all its protected web apps.
Answer: D,E
NEW QUESTION 18
An e-commerce web app is used by small businesses. Clients often access it from offices behind a router, where clients are on an IPv4 privatenetwork LAN. You need to protect the web application from denial of service attacks that use request floods.
What FortiWeb feature should you configure?
- A. Enable "Shared IP" and configure the separate rate limits for requests from NATted source IPs.
- B. Enable SYN cookies.
- C. Configure a server policy that matches requests from shared Internet connections.
- D. Configure FortiWeb to use "X-Forwarded-For:" headers to find each client's private network IP, and to block attacks using that.
Answer: B
NEW QUESTION 19
Which of the following FortiWeb features is part of the mitigation tools against OWASP A4 threats?
- A. Sensitive info masking
- B. Session Management
- C. Poison Cookie detection
- D. Brute Force blocking
Answer: B
NEW QUESTION 20
What role does FortiWeb play in ensuring PCI DSScompliance?
- A. Provides load balancing between multiple web servers
- B. Provides credit card processing capabilities
- C. Provide ability to securely process cash transactions
- D. PCI specifically requires a WAF
Answer: B
NEW QUESTION 21
You've configured an authentication rule with delegation enabled on FortiWeb.
Whathappens when a user tries to access the web application?
- A. FortiWeb replies with a HTTP challenge of behalf of the server, theif the user authenticates successfully, FortiWeb allows the request and also includes credentials in the request that it forwards to the web app
- B. ForitWeb redirects the user tothe web app's authentication page
- C. FortiWeb forwards the HTTP challenge from the server to the client, then monitors the reply, allowing access if the user authenticates successfully
- D. FrotiWeb redirects users to a FortiAuthenticator page, then if the user authenticates successfully, FortiGate signals to FortiWeb to allow access to the web app
Answer: D
NEW QUESTION 22
Which of the following is true about Local User Accounts?
- A. Can be used for site publishing
- B. Can be used for Single Sign On
- C. Must be assigned regardless of any other authentication
- D. Best suited for large environments with many users
Answer: C
NEW QUESTION 23
What is one of the key benefits of the FortiGuard IP Reputation feature?
- A. FortiGuard maintains a list of public IPs with a bad reputation for participating in attacks.
- B. It maintains a list of private IP addresses
- C. Provides a Document of IP addresses that are suspect, so that administrators can manually update their blacklists
- D. It is updated once per year
Answer: A
NEW QUESTION 24
......
2021 New Pass4cram NSE6_FWB-6.0 PDF Recently Updated Questions: https://tesking.pass4cram.com/NSE6_FWB-6.0-dumps-torrent.html